CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4816  CVE-2002-0424  Entry  efingerd 1.61 and earlier, when configured without the -u option, executes .efingerd files as the efingerd user (typically "nobody"), which allows local users to gain privileges as the efingerd user by modifying their own .efingerd file and running finger.        View
5072  CVE-2002-0682  Entry  Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.        View
5584  CVE-2002-1200  Entry  Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.        View
209  CVE-1999-0210  Entry  Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.        View
977  CVE-1999-0997  Entry  wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress.        View

Page 20838 of 20943, showing 5 records out of 104715 total, starting on record 104186, ending on 104190

Actions