CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5141  CVE-2002-0751  Candidate  CGIscript.net csMailto.cgi program allows remote attackers to use csMailto as a "spam proxy" and send mail to arbitrary users via modified (1) form-to, (2) form-from, and (3) form-results parameters.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5142  CVE-2002-0752  Candidate  CGIscript.net csMailto.cgi program exports feedback to a file that is accessible from the web document root, which could allow remote attackers to obtain sensitive information by directly accessing the file.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5143  CVE-2002-0753  Candidate  Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5157  CVE-2002-0767  Candidate  simpleinit on Linux systems does not close a read/write FIFO file descriptor before creating a child process, which allows the child process to cause simpleinit to execute arbitrary programs with root privileges.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
5160  CVE-2002-0770  Candidate  Quake 2 (Q2) server 3.20 and 3.21 allows remote attackers to obtain sensitive server cvar variables, obtain directory listings, and execute Q2 server admin commands via a client that does not expand "$" macros, which causes the server to expand the macros and leak the information, as demonstrated using "say $rcon_password."  Modified (20051128)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View

Page 4 of 20943, showing 5 records out of 104715 total, starting on record 16, ending on 20

<<first 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 last>>

Actions