CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3730 | CVE-2001-0924 | Candidate | Directory traversal vulnerability in ifx CGI program in Informix Web DataBlade allows remote attackers to read arbitrary files via a .. (dot dot) in the LO parameter. | Proposed (20020131) | ACCEPT(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | View | |
3729 | CVE-2001-0923 | Candidate | RPM Package Manager 4.0.x through 4.0.2.x allows an attacker to execute arbitrary code via corrupted data in the RPM file when the file is queried. | Proposed (20020131) | ACCEPT(2) Baker, Frech | NOOP(4) Armstrong, Cole, Foat, Wall | View | |
3728 | CVE-2001-0922 | Candidate | ndcgi.exe in Netdynamics 4.x through 5.x, and possibly earlier versions, allows remote attackers to steal session IDs and hijack user sessions by reading the SPIDERSESSION and uniqueValue variables from the login field, then using those variables after the next user logs in. | Modified (20050528) | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | Frech> XF:netdynamics-session-hijacking(7620) | View |
3727 | CVE-2001-0921 | Entry | Netscape 4.79 and earlier for MacOS allows an attacker with access to the browser to obtain passwords from form fields by printing the document into which the password has been typed, which is printed in cleartext. | View | |||
3726 | CVE-2001-0920 | Entry | Format string vulnerability in auto nice daemon (AND) 1.0.4 and earlier allows a local user to possibly execute arbitrary code via a process name containing a format string. | View |
Page 20198 of 20943, showing 5 records out of 104715 total, starting on record 100986, ending on 100990