CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5096 | CVE-2002-0706 | Candidate | UserManager.js in the Web Reports Server for SurfControl SuperScout WebFilter uses weak encryption for administrator functions, which allows remote attackers to decrypt the administrative password using a hard-coded key in a Javascript function. | Modified (20050610) | ACCEPT(1) Baker | NOOP(4) Cole, Cox, Green, Wall | View | |
5098 | CVE-2002-0708 | Candidate | Directory traversal vulnerability in the Web Reports Server for SurfControl SuperScout WebFilter allows remote attackers to read arbitrary files via an HTTP request containing ... (triple dot) sequences. | Modified (20050610) | ACCEPT(1) Baker | NOOP(4) Cole, Cox, Green, Wall | View | |
5099 | CVE-2002-0709 | Candidate | SQL injection vulnerabilities in the Web Reports Server for SurfControl SuperScout WebFilter allow remote attackers to execute arbitrary SQL queries via the RunReport option to SimpleBar.dll, and possibly other DLLs. | Modified (20050610) | ACCEPT(1) Baker | NOOP(4) Cole, Cox, Green, Wall | View | |
5205 | CVE-2002-0815 | Candidate | The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server"s parent DNS domain name to the restricted site, loading a page from the restricted site into one frame, and passing the information to the attacker-controlled frame, which is allowed because the document.domain of the two frames matches on the parent domain. | Proposed (20020830) | ACCEPT(1) Baker | NOOP(4) Cole, Cox, Foat, Wall | View | |
5700 | CVE-2002-1316 | Candidate | importInfo in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows the web administrator to execute arbitrary commands via shell metacharacters in the dir parameter, and possibly allows remote attackers to exploit this vulnerability via a separate XSS issue (CVE-2002-1315). | Modified (20071014) | ACCEPT(1) Baker | NOOP(4) Christey, Cole, Cox, Wall | REVIEWING(1) Green | Christey> fix typo: "paramatar" | View |
Page 20302 of 20943, showing 5 records out of 104715 total, starting on record 101506, ending on 101510