CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2471 | CVE-2000-0902 | Candidate | getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | Proposed (20001129) | ACCEPT(2) Collins, Mell | NOOP(2) Cole, Wall | View | |
2472 | CVE-2000-0903 | Candidate | Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack. | Proposed (20001129) | ACCEPT(2) Baker, Mell | NOOP(3) Cole, Collins, Wall | Collins> Assigning CVE numbers for demo software is not appropriate | Baker> Was this a beta version in the demo disk? I don"t think it was. While we do have an exclusion for beta software, | software that is distributed as production software, just limited in scope, does not mean beta.. | The current version is 4, but it is still offered for free download from their website for use. | CHANGE> [Baker changed vote from REVIEWING to ACCEPT] | Baker> SHould change vote from review to accept | View |
2473 | CVE-2000-0904 | Candidate | Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information. | Proposed (20001129) | ACCEPT(1) Mell | NOOP(3) Cole, Collins, Wall | Collins> assigning CVE numbers for demo software is not appropriate | View |
2474 | CVE-2000-0905 | Candidate | QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page. | Proposed (20001129) | ACCEPT(1) Mell | NOOP(2) Cole, Wall | View | |
2475 | CVE-2000-0906 | Candidate | Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters. | Proposed (20001129) | ACCEPT(3) Collins, Frech, Mell | NOOP(2) Cole, Wall | View |
Page 337 of 20943, showing 5 records out of 104715 total, starting on record 1681, ending on 1685