CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4104 | CVE-2001-1300 | Candidate | Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
4875 | CVE-2002-0483 | Candidate | index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname. | Proposed (20020611) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
4108 | CVE-2001-1304 | Candidate | Buffer overflow in SHOUTcast Server 1.8.2 allows remote attackers to cause a denial of service (crash) via several HTTP requests with a long (1) user-agent or (2) host HTTP header. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
4109 | CVE-2001-1305 | Candidate | ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user"s contact list via a URL to a web page with a Content-Type of application/x-icq, which is processed by Internet Explorer. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
5396 | CVE-2002-1008 | Candidate | Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil" HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request. | Proposed (20020830) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | Green> PUBLISHER"S WEBSITE INDICATES SECURITY FIXES | View |
Page 20076 of 20943, showing 5 records out of 104715 total, starting on record 100376, ending on 100380