CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5693 | CVE-2002-1309 | Candidate | Heap-based buffer overflow in the error-handling mechanism for the IIS ISAPI handler in Macromedia ColdFusion 6.0 allows remote attackers to execute arbitrary via an HTTP GET request with a long .cfm file name. | Proposed (20030317) | ACCEPT(3) Armstrong, Baker, Cole | NOOP(1) Cox | REVIEWING(1) Wall | Baker> http://www.macromedia.com/v1/handlers/index.cfm?ID=23161 | View |
5723 | CVE-2002-1339 | Candidate | The "XMLURL" property in the Spreadsheet component of Office Web Components (OWC) 10 follows redirections, which allows remote attackers to determine the existence of local files based on exceptions, or to read WorkSheet XML files. | Proposed (20030317) | ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall | View | |
5724 | CVE-2002-1340 | Candidate | The "ConnectionFile" property in the DataSourceControl component in Office Web Components (OWC) 10 allows remote attackers to determine the existence of local files by detecting an exception. | Proposed (20030317) | ACCEPT(1) Baker | NOOP(2) Cole, Cox | REVIEWING(1) Wall | View | |
5477 | CVE-2002-1090 | Candidate | Buffer overflow in read_smtp_response of protocol.c in libesmtp before 0.8.11 allows a remote SMTP server to (1) execute arbitrary code via a certain response or (2) cause a denial of service via long server responses. | Proposed (20030317) | ACCEPT(3) Baker, Cole, Cox | NOOP(2) Christey, Wall | Christey> REDHAT:RHSA-2003:109 | URL:http://www.redhat.com/support/errata/RHSA-2003-109.html | Christey> CONECTIVA:CLA-2003:630 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000630 | View |
5481 | CVE-2002-1094 | Candidate | Information leaks in Cisco VPN 3000 Concentrator 2.x.x and 3.x.x before 3.5.4 allow remote attackers to obtain potentially sensitive information via the (1) SSH banner, (2) FTP banner, or (3) an incorrect HTTP request. | Proposed (20030317) | ACCEPT(3) Baker, Cole, Green | MODIFY(1) Jones | NOOP(2) Christey, Cox | Jones> Change "...via the (1) SSH banner, (2) FTP banner, or (3) an | incorrect HTTP request." to "...via (1) the SSH banner, (2) the FTP banner, | or (3) an incorrect HTTP request." | Christey> CIAC:M-119 | URL:http://www.ciac.org/ciac/bulletins/m-119.shtml | View |
Page 20906 of 20943, showing 5 records out of 104715 total, starting on record 104526, ending on 104530