CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4040 | CVE-2001-1236 | Entry | myphpPagetool PHP script 0.4.3-1 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable. | View | |||
4552 | CVE-2002-0159 | Entry | Format string vulnerability in the administration function in Cisco Secure Access Control Server (ACS) for Windows, 2.6.x and earlier and 3.x through 3.01 (build 40), allows remote attackers to crash the CSADMIN module only (denial of service of administration function) or execute arbitrary code via format strings in the URL to port 2002. | View | |||
5064 | CVE-2002-0674 | Entry | Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not "time out" an inactive administrator session, which could allow other users to perform administrator actions if the administrator does not explicitly end the authentication. | View | |||
5832 | CVE-2002-1448 | Entry | An undocumented SNMP read/write community string ("NoGaH$@!") in Avaya P330, P130, and M770-ATM Cajun products allows remote attackers to gain administrative privileges. | View | |||
6856 | CVE-2003-0027 | Entry | Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure. | View |
Page 487 of 20943, showing 5 records out of 104715 total, starting on record 2431, ending on 2435