CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5536  CVE-2002-1149  Candidate  The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive information such as absolute pathnames, OS information, and PHP settings.  Modified (20050610)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View
4778  CVE-2002-0386  Candidate  The administration module for Oracle Web Cache in Oracle9iAS (9i Application Suite) 9.0.2 allows remote attackers to cause a denial of service (crash) via (1) an HTTP GET request containing a ".." (dot dot) sequence, or (2) a malformed HTTP GET request with a chunked Transfer-Encoding with missing data.  Modified (20050610)  ACCEPT(4) Baker, Cole, Green, Wall | NOOP(1) Cox    View
5051  CVE-2002-0661  Candidate  Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing (backslash) characters.  Modified (20050610)  ACCEPT(6) Armstrong, Baker, Cole, Cox, Foat, Wall | MODIFY(1) Frech | NOOP(1) Christey  Christey> BID:5434 | URL:http://www.securityfocus.com/bid/5434 | Frech> XF:apache-encoded-directory-traversal(9808)  View
5057  CVE-2002-0667  Candidate  Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 has a default null administrator password, which could allow remote attackers to gain access to the phone.  Modified (20050610)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:pingtel-xpressa-default-password(9562)  View
5060  CVE-2002-0670  Candidate  The web interface for Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 uses Base64 encoded usernames and passwords for HTTP basic authentication, which allows remote attackers to steal and easily decode the passwords via sniffing.  Modified (20050610)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:pingtel-xpressa-plaintext-passwords(9565)  View

Page 20431 of 20943, showing 5 records out of 104715 total, starting on record 102151, ending on 102155

Actions