CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2491  CVE-2000-0922  Entry  Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.        View
2492  CVE-2000-0923  Entry  authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.        View
2493  CVE-2000-0924  Entry  Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "catigory" parameter.        View
2494  CVE-2000-0925  Entry  The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.        View
2495  CVE-2000-0926  Entry  SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the "Price" hidden form variable.        View

Page 499 of 20943, showing 5 records out of 104715 total, starting on record 2491, ending on 2495

Actions