CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4914  CVE-2002-0523  Candidate  ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie.  Proposed (20020611)  ACCEPT(4) Armstrong, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4915  CVE-2002-0524  Candidate  ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, which leak the pathname in an error message.  Proposed (20020611)  ACCEPT(4) Armstrong, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4916  CVE-2002-0525  Candidate  Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses.  Proposed (20020611)  ACCEPT(3) Cole, Cox, Frech | NOOP(2) Foat, Wall | REVIEWING(1) Christey  Christey> CALDERA:CSSA-2002-038.0 | CHANGE> [Cox changed vote from REVIEWING to ACCEPT] | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Need to consult with Caldera on this.  View
4918  CVE-2002-0527  Candidate  Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad IP options.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
4919  CVE-2002-0528  Candidate  Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View

Page 20834 of 20943, showing 5 records out of 104715 total, starting on record 104166, ending on 104170

Actions