CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8492  CVE-2004-0064  Candidate  The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory.  Modified (20071113)  ACCEPT(2) Baker, Cole | NOOP(3) Armstrong, Cox, Wall    View
5899  CVE-2002-1515  Candidate  Directory traversal vulnerability in avatar.php in CoolForum 0.5 beta allows remote attackers to read arbitrary files via .. (dot dot) sequences in the img parameter.  Proposed (20030317)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View
5507  CVE-2002-1120  Candidate  Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.  Modified (20040804)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View
5508  CVE-2002-1121  Candidate  SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the default configuration of MIMEDefang before 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2046 ("Message Fragmentation and Reassembly") and supported in such products as Outlook Express, which allows remote attackers to bypass content filtering, including virus checking, via fragmented emails of the message/partial content type.  Modified (20050510)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View
5016  CVE-2002-0626  Candidate  Polycom ViewStation before 7.2.4 has a default null password for the administrator account, which allows arbitrary users to conduct unauthorized activities.  Proposed (20030317)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View

Page 20166 of 20943, showing 5 records out of 104715 total, starting on record 100826, ending on 100830

Actions