CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1354  CVE-1999-1374  Candidate  perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:perlshop-cgi-obtain-information(7557)  View
3094  CVE-2001-0273  Candidate  pgp4pine Pine/PGP interface version 1.75-6 does not properly check to see if a public key has expired when obtaining the keys via Gnu Privacy Guard (GnuPG), which causes the message to be sent in cleartext.  Modified (20050509)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:pgp4pine-expired-keys(6135)  View
3743  CVE-2001-0937  Candidate  PGPMail.pl 1.31 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) recipient or (2) pgpuserid parameters.  Proposed (20020131)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Armstrong, Foat, Wall  Frech> XF:pgpmail-config-execute-commands(7627)  View
3141  CVE-2001-0320  Candidate  bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.  Proposed (20010404)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(3) Bishop, Wall, Ziese  Frech> XF:php-nuke-elevate-privileges(6183) | CHANGE> [Bishop changed vote from REVIEWING to NOOP]  View
3829  CVE-2001-1025  Candidate  PHP-Nuke 5.x allows remote attackers to perform arbitrary SQL operations by modifying the "prefix" variable when calling any scripts that do not already define the prefix variable (e.g., by including mainfile.php), such as article.php.  Proposed (20020131)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> XF:php-nuke-prefix-admin-access(6945)  View

Page 20836 of 20943, showing 5 records out of 104715 total, starting on record 104176, ending on 104180

Actions