CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5839  CVE-2002-1455  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in OmniHTTPd allow remote attackers to insert script or HTML into web pages via (1) test.php, (2) test.shtml, or (3) redir.exe.  Proposed (20030317)  NOOP(4) Christey, Cole, Cox, Wall  Christey> The redir.exe issue involves XSS, but it also involves newline | injection. Should it be SPLIT from this CAN? | | XF:omnihttpd-test-sample-xss(9961) | URL:http://www.iss.net/security_center/static/9961.php | BID:5568 | URL:http://www.securityfocus.com/bid/5568  View
5840  CVE-2002-1456  Candidate  Buffer overflow in mIRC 6.0.2 and earlier allows remote attackers to execute arbitrary code via a long $asctime value.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5841  CVE-2002-1457  Candidate  SQL injection vulnerability in search.php for L-Forum 2.40 allows remote attackers to execute arbitrary SQL statements via the search parameter.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5586  CVE-2002-1202  Candidate  Unknown vulnerability in routed for HP Tru64 UNIX V4.0F through V5.1A allows local and remote attackers to read arbitrary files.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | NOOP(1) Cox    View
5842  CVE-2002-1458  Candidate  Cross-site scripting vulnerability in L-Forum 2.40 and earlier, when the "Enable HTML in messages" option is on, allows remote attackers to insert arbitrary script or HTML via message fields including (1) From, (2) E-Mail, (3) Subject and (4) Body.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View

Page 20918 of 20943, showing 5 records out of 104715 total, starting on record 104586, ending on 104590

Actions