CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4906  CVE-2002-0514  Candidate  PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is different than the default TTL.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
4907  CVE-2002-0515  Candidate  IPFilter 3.4.25 and earlier sets a different TTL when a port is being filtered than when it is not being filtered, which allows remote attackers to identify filtered ports by comparing TTLs.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
4911  CVE-2002-0520  Candidate  Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users by embedding it within an IMG tag.  Proposed (20020611)  ACCEPT(3) Baker, Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
4912  CVE-2002-0521  Candidate  Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuke users via script in (1) the name parameter in downloads.asp, (2) the message parameter in Post.asp, or (3) a web site URL in profile.asp.  Proposed (20020611)  ACCEPT(4) Armstrong, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4913  CVE-2002-0522  Candidate  ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie.  Proposed (20020611)  ACCEPT(4) Armstrong, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View

Page 20833 of 20943, showing 5 records out of 104715 total, starting on record 104161, ending on 104165

Actions