CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5153  CVE-2002-0763  Candidate  Vulnerability in administration server for HP VirtualVault 4.5 on HP-UX 11.04 allows remote web servers or privileged external processes to bypass access restrictions and establish connections to the server.  Proposed (20020726)  ACCEPT(2) Baker, Cole | NOOP(4) Armstrong, Cox, Foat, Wall    View
5154  CVE-2002-0764  Candidate  Phorum 3.3.2a allows remote attackers to execute arbitrary commands via an HTTP request to (1) plugin.php, (2) admin.php, or (3) del.php that modifies the PHORUM[settings_dir] variable to point to a directory that contains a PHP file with the commands.  Proposed (20020726)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Cox, Foat, Wall    View
5157  CVE-2002-0767  Candidate  simpleinit on Linux systems does not close a read/write FIFO file descriptor before creating a child process, which allows the child process to cause simpleinit to execute arbitrary programs with root privileges.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5159  CVE-2002-0769  Candidate  The web-based configuration interface for the Cisco ATA 186 Analog Telephone Adaptor allows remote attackers to bypass authentication via an HTTP POST request with a single byte, which allows the attackers to (1) obtain the password from the login screen, or (2) reconfigure the adaptor by modifying certain request parameters.  Proposed (20020726)  ACCEPT(3) Armstrong, Baker, Cole | NOOP(3) Cox, Foat, Wall    View
5161  CVE-2002-0771  Candidate  Cross-site scripting vulnerability in viewcvs.cgi for ViewCVS 0.9.2 allows remote attackers to inject script and steal cookies via the (1) cvsroot or (2) sortby parameters.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View

Page 20860 of 20943, showing 5 records out of 104715 total, starting on record 104296, ending on 104300

Actions