CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5882  CVE-2002-1498  Candidate  Directory traversal vulnerability in SWServer 2.2 and earlier allows remote attackers to read arbitrary files via a URL containing .. sequences with "/" or "" characters.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5883  CVE-2002-1499  Candidate  Multiple SQL injection vulnerabilities in FactoSystem CMS allows remote attackers to perform unauthorized database actions via (1) the authornumber parameter in author.asp, (2) the discussblurbid parameter in discuss.asp, (3) the name parameter in holdcomment.asp, and (4) the email parameter in holdcomment.asp.  Proposed (20030317)  ACCEPT(1) Cole | NOOP(2) Cox, Wall    View
5884  CVE-2002-1500  Candidate  Buffer overflow in (1) mrinfo, (2) mtrace, and (3) pppd in NetBSD 1.4.x through 1.6 allows local users to gain privileges by executing the programs after filling the file descriptor tables, which produces file descriptors larger than FD_SETSIZE, which are not checked by FD_SET().  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | NOOP(1) Cox    View
5631  CVE-2002-1247  Candidate  Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: RHSA-2002:221 | Suggest mention of KDE in the description  View
5887  CVE-2002-1503  Candidate  Buffer overflow in Automatic File Distributor (AFD) 1.2.14 and earlier allows local users to gain privileges via a long MON_WORK_DIR environment variable or -w (workdir) argument to (1) afd, (2) afdcmd, (3) afd_ctrl, (4) init_afd, (5) mafd, (6) mon_ctrl, (7) show_olog, or (8) udc.  Proposed (20030317)  ACCEPT(2) Baker, Cole | NOOP(2) Cox, Wall    View

Page 20925 of 20943, showing 5 records out of 104715 total, starting on record 104621, ending on 104625

Actions