CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1582 | CVE-2000-0004 | Entry | ZBServer Pro allows remote attackers to read source code for executable files by inserting a . (dot) into the URL. | View | |||
5078 | CVE-2002-0688 | Entry | ZCatalog plug-in index support capability for Zope 2.4.0 through 2.5.1 allows anonymous users and untrusted code to bypass access restrictions and call arbitrary methods of catalog indexes. | View | |||
33431 | CVE-2008-3314 | Candidate | ZDaemon 1.08.07 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted type 6 command, which triggers a NULL pointer dereference. | Assigned (20080725) | None (candidate not yet proposed) | View | |
42801 | CVE-2010-0217 | Candidate | Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack. | Assigned (20100106) | None (candidate not yet proposed) | View | |
14110 | CVE-2005-2904 | Candidate | Zebedee 2.4.1, when "allowed redirection port" is not set, allows remote attackers to cause a denial of service (application crash) via a zero in the port number of the protocol option header, which triggers an assert error in the makeConnection function in zebedee.c. | Assigned (20050914) | None (candidate not yet proposed) | View |
Page 20910 of 20943, showing 5 records out of 104715 total, starting on record 104546, ending on 104550