CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1632  CVE-2000-0054  Candidate  search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.  Proposed (20000125)  MODIFY(1) Frech  Frech> XF:http-cgi-homefree-search  View
1866  CVE-2000-0288  Candidate  Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable.  Proposed (20000426)  MODIFY(1) Frech | NOOP(2) Cole, Wall | REJECT(1) Baker | REVIEWING(2) Christey, Levy  Frech> XF:http-cgi-infonautics-getdoc | Christey> CD:EX-ONLINE-SVC applies here. This may be a vulnerability in | an online service (the search engines used by Infonautics) | which poses no risk to anyone but the company itself.  View
1599  CVE-2000-0021  Candidate  Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin.  Modified (20060616)  ACCEPT(3) Armstrong, Baker, Stracener | MODIFY(2) Frech, Levy | NOOP(1) Christey  Frech> XF:http-cgi-lotus-domino | Levy> BID 881 | Christey> BID:881  View
3092  CVE-2001-0271  Candidate  mailnews.cgi 1.3 and earlier allows remote attackers to execute arbitrary commands via a user name that contains shell metacharacters.  Modified (20070307)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:http-cgi-mailnews-username(6139)  View
2896  CVE-2001-0075  Candidate  Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot dot) attack in the filename parameter.  Proposed (20010202)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:http-cgi-technote-main(5813) | Contrary to current references, product is spelled TECH-NOTE | (see http://www.technote.co.kr/)  View

Page 20780 of 20943, showing 5 records out of 104715 total, starting on record 103896, ending on 103900

Actions