CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4680  CVE-2002-0288  Candidate  Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (triple dot dot) in the HTTP request.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:phusion-dot-directoy-traversal(8212)  View
4681  CVE-2002-0289  Candidate  Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:phusion-get-bo(8215) | XF:phusion-long-url-dos(8213)  View
4683  CVE-2002-0291  Candidate  Dino"s Webserver 1.2 allows remote attackers to cause a denial of service (CPU consumption) and possibly execute arbitrary code via several large HTTP requests within a short time.  Proposed (20020502)  ACCEPT(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
4686  CVE-2002-0294  Candidate  Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall  Frech> XF:omnipcx-shutdown-permissions(8226) | REASON: LIKELY | Christey> Acknowledged by Alcatel via email October 4, 2002  View
4687  CVE-2002-0295  Candidate  Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.  Proposed (20020502)  MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall  Frech> XF:omnipcx-insecure-groups(8227) | REASON: LIKELY | Christey> Acknowledged by Alcatel via email October 4, 2002  View

Page 20807 of 20943, showing 5 records out of 104715 total, starting on record 104031, ending on 104035

Actions