CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4469  CVE-2002-0075  Entry  Cross-site scripting vulnerability for Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as other web users via the error message used in a URL redirect (""302 Object Moved") message.        View
5237  CVE-2002-0847  Entry  tinyproxy HTTP proxy 1.5.0, 1.4.3, and earlier allows remote attackers to execute arbitrary code via memory that is freed twice (double-free).        View
5493  CVE-2002-1106  Entry  Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x before 3.5.1C, does not properly verify that certificate DN fields match those of the certificate from the VPN Concentrator, which allows remote attackers to conduct man-in-the-middle attacks.        View
5749  CVE-2002-1365  Entry  Heap-based buffer overflow in Fetchmail 6.1.3 and earlier does not account for the "@" character when determining buffer lengths for local addresses, which allows remote attackers to execute arbitrary code via a header with a large number of local addresses.        View
118  CVE-1999-0118  Entry  AIX infod allows local users to gain root access through an X display.        View

Page 20616 of 20943, showing 5 records out of 104715 total, starting on record 103076, ending on 103080

Actions