CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3031 | CVE-2001-0210 | Candidate | Directory traversal vulnerability in commerce.cgi CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the page parameter. | Proposed (20010309) | MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese | Frech> XF:commerce-cgi-view-files(6095) | View |
3032 | CVE-2001-0211 | Candidate | Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter. | Proposed (20010309) | MODIFY(1) Frech | NOOP(4) Christey, Cole, Lawler, Ziese | Frech> XF:webspirs-cgi-view-files(6101) | Christey> ADDREF BUGTRAQ:20010331 Webspirs remote script explotation | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98608561912120&w=2 | Christey> Mention the webspirs.cgi program specifically; also, should | the version be 3.3.1? | View |
3033 | CVE-2001-0212 | Candidate | Directory traversal vulnerability in HIS Auktion 1.62 allows remote attackers to read arbitrary files via a .. (dot dot) in the menue parameter, and possibly execute commands via shell metacharacters. | Proposed (20010309) | MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese | Frech> XF:his-auktion-cgi-url(6090) | View |
3034 | CVE-2001-0213 | Candidate | Buffer overflow in pi program in PlanetIntra 2.5 allows remote attackers to execute arbitrary commands. | Proposed (20010309) | ACCEPT(2) Frech, Lawler | NOOP(2) Christey, Ziese | Christey> CHANGEREF BUGTRAQ [normalize date] | View |
3035 | CVE-2001-0214 | Candidate | Way-board CGI program allows remote attackers to read arbitrary files by specifying the filename in the db parameter and terminating the filename with a null byte. | Proposed (20010309) | MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese | Frech> XF:wayboard-cgi-view-files(6091) | View |
Page 310 of 20943, showing 5 records out of 104715 total, starting on record 1546, ending on 1550