CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5321  CVE-2002-0933  Candidate  Datalex PLC BookIt! Consumer before 2.2 stores usernames and passwords in plaintext in a cookie, which could allow remote attackers to gain privileges via Cross-site scripting or sniffing attacks.  Proposed (20020830)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
5322  CVE-2002-0934  Candidate  Directory traversal vulnerability in Jon Hedley AlienForm2 (typically installed as af.cgi or alienform.cgi) allows remote attackers to read or modify arbitrary files via an illegal character in the middle of a .. (dot dot) sequence in the parameters (1) _browser_out or (2) _out_file.  Proposed (20020830)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
5325  CVE-2002-0937  Candidate  The Java Server Pages (JSP) engine in JRun allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).  Proposed (20020830)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
5327  CVE-2002-0939  Candidate  The Install Wizard for nCipher MSCAPI CSP 5.50 does not use Operator Card Set protected keys when the user requests them but does not generate the Operator Card Set, which results in a lower protection level than specified by the user (module protection only).  Proposed (20020830)  ACCEPT(6) Alderson, Armstrong, Baker, Cole, Frech, Jones | NOOP(3) Christey, Cox, Foat  Christey> Add "a different issue than CVE-2002-0940" to emphasize | difference.  View
5328  CVE-2002-0940  Candidate  domesticinstall.exe for nCipher MSCAPI CSP 5.50 and 5.54 does not use Operator Card Set protected keys when the user requests them but does not generate the Operator Card Set, which results in a lower protection level than specified by the user (module protection only).  Proposed (20020830)  ACCEPT(3) Baker, Cole, Green | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall  Christey> Add "a different issue than CVE-2002-0939" to emphasize | difference. | Frech> XF:mscapi-csp-domesticinstall-key(10356)  View

Page 20894 of 20943, showing 5 records out of 104715 total, starting on record 104466, ending on 104470

Actions