CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9915 | CVE-2004-1487 | Candidate | wget 1.8.x and 1.9.x allows a remote malicious web server to overwrite certain files via a redirection URL containing a ".." that resolves to the IP address of the malicious server, which bypasses wget"s filtering for ".." sequences. | Assigned (20050215) | None (candidate not yet proposed) | View | |
9916 | CVE-2004-1488 | Candidate | wget 1.8.x and 1.9.x does not filter or quote control characters when displaying HTTP responses to the terminal, which may allow remote malicious web servers to inject terminal escape sequences and execute arbitrary code. | Assigned (20050215) | None (candidate not yet proposed) | View | |
10440 | CVE-2004-2014 | Candidate | Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded. | Assigned (20050504) | None (candidate not yet proposed) | View | |
7951 | CVE-2003-1127 | Candidate | Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor. | Assigned (20050312) | None (candidate not yet proposed) | View | |
2423 | CVE-2000-0854 | Entry | When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL"s such as riched20.dll and msi.dll, which could allow an attacker to execute arbitrary commands by inserting a Trojan Horse DLL into the same directory as the document. | View |
Page 20723 of 20943, showing 5 records out of 104715 total, starting on record 103611, ending on 103615