CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3032 | CVE-2001-0211 | Candidate | Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter. | Proposed (20010309) | MODIFY(1) Frech | NOOP(4) Christey, Cole, Lawler, Ziese | Frech> XF:webspirs-cgi-view-files(6101) | Christey> ADDREF BUGTRAQ:20010331 Webspirs remote script explotation | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98608561912120&w=2 | Christey> Mention the webspirs.cgi program specifically; also, should | the version be 3.3.1? | View |
586 | CVE-1999-0604 | Candidate | An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private information. | Proposed (19990728) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Northcutt, Wall | Frech> XF:webstore-misconfig(3861) | View |
3269 | CVE-2001-0452 | Candidate | BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command. | Proposed (20010524) | ACCEPT(4) Baker, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:webweaver-ftp-path-disclosure(6477) | View |
3270 | CVE-2001-0453 | Candidate | Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories. | Proposed (20010524) | ACCEPT(3) Baker, Balinsky, Williams | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | Frech> XF:webweaver-web-directory-traversal(6476) | View |
3502 | CVE-2001-0694 | Candidate | Directory traversal vulnerability in WFTPD 3.00 R5 allows a remote attacker to view arbitrary files via a dot dot attack in the CD command. | Proposed (20010829) | MODIFY(1) Frech | NOOP(3) Foat, Wall, Ziese | Frech> XF:wftpd-dir-traverse(5608) | View |
Page 20886 of 20943, showing 5 records out of 104715 total, starting on record 104426, ending on 104430