CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4127 | CVE-2001-1323 | Candidate | Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_encode function processes file glob output from the ftpglob function. | Proposed (20020502) | ACCEPT(3) Cole, Cox, Green | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:kerberos-inject-base64-encode(6454) | View |
4639 | CVE-2002-0247 | Candidate | Buffer overflows in wmtv 0.6.5 and earlier may allow local users to gain privileges. | Proposed (20020502) | ACCEPT(4) Armstrong, Cole, Frech, Wall | NOOP(2) Cox, Foat | Frech> CONFIRM:http://www.debian.org/security/2002/dsa-108 | View |
4640 | CVE-2002-0248 | Candidate | wmtv 0.6.5 and earlier allows local users to modify arbitrary files via a symlink attack on a configuration file. | Proposed (20020502) | ACCEPT(3) Armstrong, Cole, Frech | NOOP(3) Cox, Foat, Wall | View | |
4129 | CVE-2001-1325 | Candidate | Internet Explorer 5.0 and 5.5, and Outlook Express 5.0 and 5.5, allow remote attackers to execute scripts when Active Scripting is disabled by including the scripts in XML stylesheets (XSL) that are referenced using an IFRAME tag, possibly due to a vulnerability in Windows Scripting Host (WSH). | Proposed (20020502) | ACCEPT(3) Cole, Frech, Green | NOOP(2) Cox, Foat | REVIEWING(1) Wall | View | |
4641 | CVE-2002-0249 | Candidate | PHP for Windows, when installed on Apache 2.0.28 beta as a standalone CGI module, allows remote attackers to obtain the physical path of the php.exe via a request with malformed arguments such as /123, which leaks the pathname in the error message. | Proposed (20020502) | ACCEPT(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall | View |
Page 20799 of 20943, showing 5 records out of 104715 total, starting on record 103991, ending on 103995