CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4539 | CVE-2002-0145 | Candidate | chuid 1.2 and earlier does not properly verify the ownership of files that will be changed, which allows remote attackers to change files owned by other users, such as root. | Modified (20050527) | ACCEPT(3) Balinsky, Cole, Green | MODIFY(1) Frech | NOOP(3) Foat, Wall, Ziese | Frech> XF:chuid-unauthorized-ownership-change(7976) | View |
4623 | CVE-2002-0231 | Candidate | Buffer overflow in mIRC 5.91 and earlier allows a remote server to execute arbitrary code on the client via a long nickname. | Modified (20050528) | ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall | View | |
4636 | CVE-2002-0244 | Candidate | Directory traversal vulnerability in chroot function in AtheOS 0.3.7 allows attackers to escape the jail via a .. (dot dot) in the pathname argument to chdir. | Modified (20050528) | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | Frech> XF:atheos-dot-directory-traversal(8108) | View |
3645 | CVE-2001-0839 | Candidate | ibillpm.pl in iBill password management system generates weak passwords based on a client"s MASTER_ACCOUNT, which allows remote attackers to modify account information in the .htpasswd file via brute force password guessing. | Modified (20050528) | MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | Frech> XF:ibillpm-cgi-insecure-password(7352) | View |
5183 | CVE-2002-0793 | Candidate | Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility. | Modified (20050528) | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | View |
Page 20423 of 20943, showing 5 records out of 104715 total, starting on record 102111, ending on 102115