CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4593  CVE-2002-0201  Candidate  Cyberstop Web Server for Windows 0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request, possibly triggering a buffer overflow.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4594  CVE-2002-0202  Candidate  PaintBBS 1.2 installs certain files and directories with insecure permissions, which allows local users to (1) obtain the encrypted server password via the world-readable oekakibbs.conf file, or (2) modify the server configuration via the world-writeable /oekaki/ folder.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4597  CVE-2002-0205  Candidate  Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4598  CVE-2002-0206  Candidate  index.php in Francisco Burzi PHP-Nuke 5.3.1 and earlier, and possibly other versions before 5.5, allows remote attackers to execute arbitrary PHP code by specifying a URL to the malicious code in the file parameter.  Modified (20050326)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4602  CVE-2002-0210  Candidate  setlicense for TOLIS Group Backup and Restore Utility (BRU) 17.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/brutest.$$ temporary file.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View

Page 20213 of 20943, showing 5 records out of 104715 total, starting on record 101061, ending on 101065

Actions