CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8492 | CVE-2004-0064 | Candidate | The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory. | Modified (20071113) | ACCEPT(2) Baker, Cole | NOOP(3) Armstrong, Cox, Wall | View | |
5899 | CVE-2002-1515 | Candidate | Directory traversal vulnerability in avatar.php in CoolForum 0.5 beta allows remote attackers to read arbitrary files via .. (dot dot) sequences in the img parameter. | Proposed (20030317) | ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall | View | |
5507 | CVE-2002-1120 | Candidate | Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. | Modified (20040804) | ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall | View | |
5508 | CVE-2002-1121 | Candidate | SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the default configuration of MIMEDefang before 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2046 ("Message Fragmentation and Reassembly") and supported in such products as Outlook Express, which allows remote attackers to bypass content filtering, including virus checking, via fragmented emails of the message/partial content type. | Modified (20050510) | ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall | View | |
5016 | CVE-2002-0626 | Candidate | Polycom ViewStation before 7.2.4 has a default null password for the administrator account, which allows arbitrary users to conduct unauthorized activities. | Proposed (20030317) | ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall | View |
Page 20166 of 20943, showing 5 records out of 104715 total, starting on record 100826, ending on 100830