CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4009  CVE-2001-1205  Candidate  Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via ".." sequences in the $error_log variable.  Modified (20070307)  MODIFY(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese  Green> WHEN AND IF IT IS SPLIT.......... | Frech> XF:lastlines-cgi-directory-traversal(7753)  View
4010  CVE-2001-1206  Candidate  Matrix CGI vault Last Lines 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the $error_log variable.  Modified (20070307)  MODIFY(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese  Green> WHEN AND IF IT IS SPLIT.......... | Frech> XF:lastlines-cgi-command-execution(7754)  View
3281  CVE-2001-0464  Candidate  Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.  Modified (20070307)  MODIFY(1) Frech | NOOP(4) Christey, Cole, Wall, Ziese  Frech> XF:cyberscheduler-timezone-bo(6401) | Christey> BUGTRAQ:20010420 Apology: Advisory numbering confusion | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98779423227844&w=2  View
5387  CVE-2002-0999  Candidate  Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations.  Modified (20070314)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
5324  CVE-2002-0936  Candidate  The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).  Modified (20070509)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View

Page 20468 of 20943, showing 5 records out of 104715 total, starting on record 102336, ending on 102340

Actions