CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7625  CVE-2003-0801  Candidate  Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute arbitrary web script and steal cookies via a URL to the docs/ directory that contains the script.  Assigned (20030917)  None (candidate not yet proposed)    View
7626  CVE-2003-0802  Candidate  Nokia Electronic Documentation (NED) 5.0 allows remote attackers to obtain a directory listing of the WebLogic web root, and the physical path of the NED server, via a "retrieve" action with a location parameter of . (dot).  Assigned (20030917)  None (candidate not yet proposed)    View
7627  CVE-2003-0803  Candidate  Nokia Electronic Documentation (NED) 5.0 allows remote attackers to use NED as an open HTTP proxy via a URL in the location parameter, which NED accesses and returns to the user.  Assigned (20030917)  None (candidate not yet proposed)    View
7628  CVE-2003-0804  Candidate  The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP requests.  Assigned (20030917)  None (candidate not yet proposed)    View
7607  CVE-2003-0783  Candidate  Multiple buffer overflows in hztty 2.0 allow local users to gain root privileges.  Assigned (20030916)  None (candidate not yet proposed)    View

Page 20173 of 20943, showing 5 records out of 104715 total, starting on record 100861, ending on 100865

Actions