CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2564  CVE-2000-0995  Entry  Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name.        View
3332  CVE-2001-0518  Entry  Oracle listener before Oracle 9i allows attackers to cause a denial of service by repeatedly sending the first portion of a fragmented Oracle command without sending the remainder of the command, which causes the listener to hang.        View
4100  CVE-2001-1296  Entry  More.groupware PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.        View
5124  CVE-2002-0734  Entry  b2edit.showposts.php in B2 2.0.6pre2 and earlier does not properly load the b2config.php file in some configurations, which allows remote attackers to execute arbitrary PHP code via a URL that sets the $b2inc variable to point to a malicious program stored on a remote server.        View
5636  CVE-2002-1252  Entry  The Application Messaging Gateway for PeopleTools 8.1x before 8.19, as used in various PeopleSoft products, allows remote attackers to read arbitrary files via certain XML External Entities (XXE) fields in an HTTP POST request that is processed by the SimpleFileHandler handler.        View

Page 20343 of 20943, showing 5 records out of 104715 total, starting on record 101711, ending on 101715

Actions