CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5811  CVE-2002-1427  Candidate  The print_html_to_file function in edit.cgi for Easy Homepage Creator 1.0 does not check user credentials, which allows remote attackers to modify home pages of other users.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5812  CVE-2002-1428  Candidate  index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5813  CVE-2002-1429  Candidate  Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML into the shoutbox page via the site parameter.  Proposed (20030317)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View
5558  CVE-2002-1174  Candidate  Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readheaders function, or (2) via long Received: headers, which are not properly parsed by the parse_received function.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:216  View
5559  CVE-2002-1175  Candidate  The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:216  View

Page 20913 of 20943, showing 5 records out of 104715 total, starting on record 104561, ending on 104565

Actions