CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4536  CVE-2002-0142  Candidate  CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of . (dot) characters.  Proposed (20020315)  ACCEPT(3) Cole, Frech, Green | NOOP(4) Balinsky, Christey, Foat, Wall  Christey> VULNWATCH:20020113 Pi3Web Webserver v2.0 Buffer Overflow Vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0015.html  View
4025  CVE-2001-1221  Candidate  D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point uses a default SNMP community string of "public" which allows remote attackers to gain sensitive information.  Proposed (20020315)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | REJECT(1) Ziese  Ziese> candidate? | Frech> XF:nwn-ap-default-snmp-read(6559)  View
4026  CVE-2001-1222  Candidate  Plesk Server Administrator (PSA) 1.0 allows remote attackers to obtain PHP source code via an HTTP request containing the target"s IP address and a valid account name for the domain.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
4538  CVE-2002-0144  Candidate  Directory traversal vulnerability in chuid 1.2 and earlier allows remote attackers to change the ownership of files outside of the upload directory via a .. (dot dot) attack.  Proposed (20020315)  ACCEPT(4) Balinsky, Cole, Frech, Green | NOOP(2) Foat, Wall    View
4027  CVE-2001-1223  Candidate  The web administration server for ELSA Lancom 1100 Office does not require authentication, which allows arbitrary remote attackers to gain administrative privileges by connecting to the server.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View

Page 20789 of 20943, showing 5 records out of 104715 total, starting on record 103941, ending on 103945

Actions