CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5718  CVE-2002-1334  Candidate  Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct parameter in imageFolio.cgi, or (2) nph-build.cgi.  Modified (20080226)  ACCEPT(1) Baker | NOOP(3) Cole, Cox, Wall | REVIEWING(1) Green    View
5771  CVE-2002-1387  Candidate  The spray mode in traceroute-nanog (aka traceroute-ng) may allow local users to overwrite arbitrary memory locations via an array index overflow using the nprobes (number of probes) argument.  Proposed (20030317)  ACCEPT(1) Baker | NOOP(3) Cole, Cox, Wall | REVIEWING(1) Green  Green> ACKNOWLEDGED-BY-VENDOR  View
5575  CVE-2002-1191  Candidate  The Sabserv client component in Sabre Desktop Reservation Software 4.2 through 4.4 allows remote attackers to cause a denial of service via malformed input to TCP port 1001.  Modified (20071101)  ACCEPT(1) Baker | NOOP(3) Cole, Cox, Wall    View
2451  CVE-2000-0882  Candidate  Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed ICMP packet, which causes the CPU to crash.  Proposed (20001018)  ACCEPT(1) Baker | NOOP(3) Armstrong, Cole, Wall    View
5722  CVE-2002-1338  Candidate  The Load method in the Chart component of Office Web Components (OWC) 9 and 10 generates an exception when a specified file does not exist, which allows remote attackers to determine the existence of local files.  Modified (20050326)  ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall    View

Page 20304 of 20943, showing 5 records out of 104715 total, starting on record 101516, ending on 101520

Actions