CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5520  CVE-2002-1133  Candidate  Encoded directory traversal vulnerability in Dino"s web server 2.1 allows remote attackers to read arbitrary files via ".." (dot dot) sequences with URL-encoded (1) "/" (%2f") or (2) "" (%5c) characters.  Proposed (20030317)  ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall  Balinsky> No confirmation available. Software apparently no longer available.  View
5596  CVE-2002-1212  Candidate  Buffer overflow in RadioBird Software WebServer 4 Everyone 1.23 and 1.27, and other versions before 1.30, allows remote attackers to cause a denial of service (crash) via a long HTTP GET request.  Modified (20071101)  ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall  Balinsky> Links to software are dead. Cannot verify.  View
5597  CVE-2002-1213  Candidate  Directory traversal vulnerability in RadioBird Software WebServer 4 Everyone 1.23 and 1.27, and other versions before 1.30, allows remote attackers to read arbitrary files via an HTTP request with ".." (dot-dot) sequences containing URL-encoded forward slash ("%2F") characters.  Modified (20050615)  ACCEPT(2) Armstrong, Cole | NOOP(3) Balinsky, Cox, Wall  Balinsky> Software download sites dead. Cannot confirm.  View
8705  CVE-2004-0277  Candidate  Format string vulnerability in Dream FTP 1.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the username.  Proposed (20040318)  ACCEPT(2) Armstrong, Cole | NOOP(2) Cox, Wall    View
5896  CVE-2002-1512  Candidate  xbru in BRU Workstation 17.0 allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the xbru_dscheck.dd temporary file.  Proposed (20030317)  ACCEPT(2) Armstrong, Cole | NOOP(2) Cox, Wall    View

Page 20182 of 20943, showing 5 records out of 104715 total, starting on record 100906, ending on 100910

Actions