CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2471  CVE-2000-0902  Candidate  getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.  Proposed (20001129)  ACCEPT(2) Collins, Mell | NOOP(2) Cole, Wall    View
2472  CVE-2000-0903  Candidate  Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack.  Proposed (20001129)  ACCEPT(2) Baker, Mell | NOOP(3) Cole, Collins, Wall  Collins> Assigning CVE numbers for demo software is not appropriate | Baker> Was this a beta version in the demo disk? I don"t think it was. While we do have an exclusion for beta software, | software that is distributed as production software, just limited in scope, does not mean beta.. | The current version is 4, but it is still offered for free download from their website for use. | CHANGE> [Baker changed vote from REVIEWING to ACCEPT] | Baker> SHould change vote from review to accept  View
2473  CVE-2000-0904  Candidate  Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information.  Proposed (20001129)  ACCEPT(1) Mell | NOOP(3) Cole, Collins, Wall  Collins> assigning CVE numbers for demo software is not appropriate  View
2474  CVE-2000-0905  Candidate  QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page.  Proposed (20001129)  ACCEPT(1) Mell | NOOP(2) Cole, Wall    View
2475  CVE-2000-0906  Candidate  Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters.  Proposed (20001129)  ACCEPT(3) Collins, Frech, Mell | NOOP(2) Cole, Wall    View

Page 337 of 20943, showing 5 records out of 104715 total, starting on record 1681, ending on 1685

Actions