CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8663  CVE-2004-0235  Candidate  Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path").  Assigned (20040317)  None (candidate not yet proposed)    View
5963  CVE-2002-1579  Candidate  SAP GUI (Sapgui) 4.6D allows remote attackers to cause a denial of service (crash) via a connection to a high-numbered port, which generates an "unknown connection data" error.  Assigned (20040316)  None (candidate not yet proposed)    View
8653  CVE-2004-0225  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20040316)  None (candidate not yet proposed)    View
5960  CVE-2002-1576  Candidate  lserver in SAP DB 7.3 and earlier uses the current working directory to find and execute the lserversrv program, which allows local users to gain privileges with a malicious lserversrv that is called from a directory that has a symlink to the lserver program.  Assigned (20040315)  None (candidate not yet proposed)    View
5961  CVE-2002-1577  Candidate  SAP R/3 2.0B to 4.6D installs several clients with default users and passwords, which allows remote attackers to gain privileges via the (1) SAP*, (2) SAPCPIC, (3) DDIC, (4) EARLYWATCH, or (5) TMSADM accounts.  Assigned (20040315)  None (candidate not yet proposed)    View

Page 20102 of 20943, showing 5 records out of 104715 total, starting on record 100506, ending on 100510

Actions