CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5260 | CVE-2002-0870 | Candidate | The original patch for the Cisco Content Service Switch 11000 Series authentication bypass vulnerability (CVE-2001-0622) was incomplete, which still allows remote attackers to gain additional privileges by directly requesting the web management URL instead of navigating through the interface, possibly via a variant of the original attack, as identified by Cisco bug ID CSCdw08549. | Proposed (20020830) | ACCEPT(4) Armstrong, Baker, Cole, Wall | MODIFY(1) Frech | NOOP(2) Cox, Foat | Frech> XF:cisco-css-web-management(6631) | View |
5264 | CVE-2002-0874 | Candidate | Vulnerability in Interchange 4.8.6, 4.8.3, and other versions, when running in INET mode, allows remote attackers to read arbitrary files. | Proposed (20020830) | ACCEPT(4) Armstrong, Baker, Cole, Cox | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall | Christey> XF:interchange-inet-read-files(9833) | URL:http://www.iss.net/security_center/static/9833.php | BID:5453 | URL:http://www.securityfocus.com/bid/5453 | | Modify desc to say "unknown vulnerability" to emphasize that | the actual cause of the problem is unknown. | Frech> XF:interchange-inet-read-files(9833) | View |
5266 | CVE-2002-0876 | Candidate | Web server for Shambala 4.5 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(6) Alderson, Armstrong, Cole, Cox, Foat, Jones | View | |
5267 | CVE-2002-0877 | Candidate | Directory traversal vulnerability in the FTP server for Shambala 4.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) LIST (ls) or (2) GET commands. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(6) Alderson, Armstrong, Cole, Cox, Foat, Jones | View | |
5268 | CVE-2002-0878 | Candidate | SQL injection vulnerability in the login form for LogiSense software including (1) Hawk-i Billing, (2) Hawk-i ASP and (3) DNS Manager allows remote attackers to bypass authentication via SQL code in the password field. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall | View |
Page 20885 of 20943, showing 5 records out of 104715 total, starting on record 104421, ending on 104425