CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3031  CVE-2001-0210  Candidate  Directory traversal vulnerability in commerce.cgi CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the page parameter.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:commerce-cgi-view-files(6095)  View
3032  CVE-2001-0211  Candidate  Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter.  Proposed (20010309)  MODIFY(1) Frech | NOOP(4) Christey, Cole, Lawler, Ziese  Frech> XF:webspirs-cgi-view-files(6101) | Christey> ADDREF BUGTRAQ:20010331 Webspirs remote script explotation | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98608561912120&w=2 | Christey> Mention the webspirs.cgi program specifically; also, should | the version be 3.3.1?  View
3033  CVE-2001-0212  Candidate  Directory traversal vulnerability in HIS Auktion 1.62 allows remote attackers to read arbitrary files via a .. (dot dot) in the menue parameter, and possibly execute commands via shell metacharacters.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:his-auktion-cgi-url(6090)  View
3034  CVE-2001-0213  Candidate  Buffer overflow in pi program in PlanetIntra 2.5 allows remote attackers to execute arbitrary commands.  Proposed (20010309)  ACCEPT(2) Frech, Lawler | NOOP(2) Christey, Ziese  Christey> CHANGEREF BUGTRAQ [normalize date]  View
3035  CVE-2001-0214  Candidate  Way-board CGI program allows remote attackers to read arbitrary files by specifying the filename in the db parameter and terminating the filename with a null byte.  Proposed (20010309)  MODIFY(1) Frech | NOOP(3) Cole, Lawler, Ziese  Frech> XF:wayboard-cgi-view-files(6091)  View

Page 310 of 20943, showing 5 records out of 104715 total, starting on record 1546, ending on 1550

Actions