CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4539  CVE-2002-0145  Candidate  chuid 1.2 and earlier does not properly verify the ownership of files that will be changed, which allows remote attackers to change files owned by other users, such as root.  Modified (20050527)  ACCEPT(3) Balinsky, Cole, Green | MODIFY(1) Frech | NOOP(3) Foat, Wall, Ziese  Frech> XF:chuid-unauthorized-ownership-change(7976)  View
4623  CVE-2002-0231  Candidate  Buffer overflow in mIRC 5.91 and earlier allows a remote server to execute arbitrary code on the client via a long nickname.  Modified (20050528)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4636  CVE-2002-0244  Candidate  Directory traversal vulnerability in chroot function in AtheOS 0.3.7 allows attackers to escape the jail via a .. (dot dot) in the pathname argument to chdir.  Modified (20050528)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:atheos-dot-directory-traversal(8108)  View
3645  CVE-2001-0839  Candidate  ibillpm.pl in iBill password management system generates weak passwords based on a client"s MASTER_ACCOUNT, which allows remote attackers to modify account information in the .htpasswd file via brute force password guessing.  Modified (20050528)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:ibillpm-cgi-insecure-password(7352)  View
5183  CVE-2002-0793  Candidate  Hard link and possibly symbolic link following vulnerabilities in QNX RTOS 4.25 (aka QNX4) allow local users to overwrite arbitrary files via (1) the -f argument to the monitor utility, (2) the -d argument to dumper, (3) the -c argument to crttrap, or (4) using the Watcom sample utility.  Modified (20050528)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View

Page 20423 of 20943, showing 5 records out of 104715 total, starting on record 102111, ending on 102115

Actions