CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4102  CVE-2001-1298  Candidate  Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4615  CVE-2002-0223  Candidate  Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through 5.0.9 allows remote attackers to upload arbitrary files by using a filename that contains an accepted extension, but ends in a different extension.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4104  CVE-2001-1300  Candidate  Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4617  CVE-2002-0225  Candidate  tac_plus Tacacs+ daemon F4.0.4.alpha, originally maintained by Cisco, creates files from the accounting directive with world-readable and writable permissions, which allows local users to access and modify sensitive files.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4619  CVE-2002-0227  Candidate  KICQ 2.0.0b1 allows remote attackers to cause a denial of service (crash) via a malformed message.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View

Page 20792 of 20943, showing 5 records out of 104715 total, starting on record 103956, ending on 103960

Actions