CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4108  CVE-2001-1304  Candidate  Buffer overflow in SHOUTcast Server 1.8.2 allows remote attackers to cause a denial of service (crash) via several HTTP requests with a long (1) user-agent or (2) host HTTP header.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4620  CVE-2002-0228  Candidate  Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(1) Foat | REVIEWING(1) Wall    View
4109  CVE-2001-1305  Candidate  ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user"s contact list via a URL to a web page with a Content-Type of application/x-icq, which is processed by Internet Explorer.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
4621  CVE-2002-0229  Candidate  Safe Mode feature (safe_mode) in PHP 3.0 through 4.1.0 allows attackers with access to the MySQL database to bypass Safe Mode access restrictions and read arbitrary files using "LOAD DATA INFILE LOCAL" SQL statements.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4110  CVE-2001-1306  Candidate  iPlanet Directory Server 4.1.4 and earlier (LDAP) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via invalid BER length of length fields, as demonstrated by the PROTOS LDAPv3 test suite.  Proposed (20020502)  ACCEPT(3) Cole, Green, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat  Frech> XF:iplanet-ldap-protos-bo(6893)  View

Page 20793 of 20943, showing 5 records out of 104715 total, starting on record 103961, ending on 103965

Actions