CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5324  CVE-2002-0936  Candidate  The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).  Modified (20070509)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
5387  CVE-2002-0999  Candidate  Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations.  Modified (20070314)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
3092  CVE-2001-0271  Candidate  mailnews.cgi 1.3 and earlier allows remote attackers to execute arbitrary commands via a user name that contains shell metacharacters.  Modified (20070307)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:http-cgi-mailnews-username(6139)  View
4009  CVE-2001-1205  Candidate  Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via ".." sequences in the $error_log variable.  Modified (20070307)  MODIFY(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese  Green> WHEN AND IF IT IS SPLIT.......... | Frech> XF:lastlines-cgi-directory-traversal(7753)  View
4010  CVE-2001-1206  Candidate  Matrix CGI vault Last Lines 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the $error_log variable.  Modified (20070307)  MODIFY(1) Frech | NOOP(5) Cole, Foat, Green, Wall, Ziese  Green> WHEN AND IF IT IS SPLIT.......... | Frech> XF:lastlines-cgi-command-execution(7754)  View

Page 476 of 20943, showing 5 records out of 104715 total, starting on record 2376, ending on 2380

Actions