CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2638  CVE-2000-1070  Entry  pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.        View
3406  CVE-2001-0593  Entry  Ananconda Partners Clipper 3.3 and earlier allows a remote attacker to read arbitrary files via a ".." (dot dot) attack in the template parameter.        View
4174  CVE-2001-1370  Entry  prepend.php3 in PHPLib before 7.2d, when register_globals is enabled for PHP, allows remote attackers to execute arbitrary scripts via an HTTP request that modifies $_PHPLIB[libdir] to point to malicious code on another server, as seen in Horde 1.2.5 and earlier, IMP before 2.2.6, and other packages that use PHPLib.        View
4430  CVE-2002-0036  Entry  Integer signedness error in MIT Kerberos V5 ASN.1 decoder before krb5 1.2.5 allows remote attackers to cause a denial of service via a large unsigned data element length, which is later used as a negative value.        View
5198  CVE-2002-0808  Entry  Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when performing a mass change, sets the groupset of all bugs to the groupset of the first bug, which could inadvertently cause insecure groupset permissions to be assigned to some bugs.        View

Page 20520 of 20943, showing 5 records out of 104715 total, starting on record 102596, ending on 102600

Actions