CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8665  CVE-2004-0237  Candidate  Directory traversal vulnerability in index.php in Aprox PHP Portal allows remote attackers to read arbitrary files via a full pathname in the show parameter.  Modified (20071031)  NOOP(5) Armstrong, Cole, Cox, Green, Wall    View
5638  CVE-2002-1254  Candidate  Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model and access information on the local system or in other domains, and possibly execute code, via cached methods and objects, aka "Cross Domain Verification via Cached Methods."  Modified (20071101)  ACCEPT(3) Cole, Green, Wall | NOOP(1) Cox    View
5436  CVE-2002-1048  Candidate  HP JetDirect printers allow remote attackers to obtain the administrative password for the (1) web and (2) telnet services via an SNMP request to the variable (.iso.3.6.1.4.1.11.2.3.9.4.2.1.3.9.1.1.0.  Modified (20071101)  NOOP(3) Cole, Cox, Wall | REJECT(1) Foat  Foat> This candidate should list which printers have this vulnerability. On | the printers we checked this was not a problem.  View
5193  CVE-2002-0803  Candidate  Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, allows remote attackers to display restricted products and components via a direct HTTP request to queryhelp.cgi.  Modified (20071101)  ACCEPT(3) Baker, Cole, Wall | MODIFY(1) Frech | NOOP(1) Foat  Frech> XF:bugzilla-queryhelp-obtain-information(9300)  View
5197  CVE-2002-0807  Candidate  Cross-site scripting vulnerabilities in Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, could allow remote attackers to execute script as other Bugzilla users via the full name (real name) field, which is not properly quoted by editusers.cgi.  Modified (20071101)  ACCEPT(3) Baker, Cole, Wall | MODIFY(1) Frech | NOOP(1) Foat  Frech> XF:bugzilla-real-name-xss(9304)  View

Page 20476 of 20943, showing 5 records out of 104715 total, starting on record 102376, ending on 102380

Actions