CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4481 | CVE-2002-0087 | Candidate | bindsock in Lotus Domino 5.07 on Solaris allows local users to create arbitrary files via a symlink attack on temporary files. | Modified (20050528) | ACCEPT(4) Balinsky, Cole, Foat, Green | NOOP(3) Christey, Wall, Ziese | Christey> Consider adding BID:4318 | CHANGE> [Foat changed vote from NOOP to ACCEPT] | Christey> CONFIRM:http://www-1.ibm.com/support/manager.wss?rs=463&rt=0&org=sims&doc=93B3ED336951525385256B7D006A3CE3 | VULNWATCH:20020429 [VulnWatch] eSecurityOnline Security Advisory 4125 - Lotus Domino bindsock arbitrary file creation vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0045.html | View |
3728 | CVE-2001-0922 | Candidate | ndcgi.exe in Netdynamics 4.x through 5.x, and possibly earlier versions, allows remote attackers to steal session IDs and hijack user sessions by reading the SPIDERSESSION and uniqueValue variables from the login field, then using those variables after the next user logs in. | Modified (20050528) | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall | Frech> XF:netdynamics-session-hijacking(7620) | View |
4530 | CVE-2002-0136 | Candidate | Microsoft Internet Explorer 5.5 on Windows 98 allows remote web pages to cause a denial of service (hang) via extremely long values for form fields such as INPUT and TEXTAREA, which can be automatically filled via Javascript. | Modified (20050528) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(2) Cole, Foat | REVIEWING(1) Wall | Frech> XF:ie-html-form-dos(7938) | View |
5371 | CVE-2002-0983 | Candidate | IRC client irssi in irssi-text before 0.8.4 allows remote attackers to cause a denial of service (crash) via an IRC channel that has a long topic followed by a certain string, possibly triggering a buffer overflow. | Modified (20050528) | ACCEPT(3) Armstrong, Baker, Cole | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall | Christey> BUGTRAQ:20020619 DoS on irssi 0.8.4 | URL:http://online.securityfocus.com/archive/1/277686 | XF:irssi-long-topic-dos(9395) | URL:http://www.iss.net/security_center/static/9395.php | Frech> XF:irssi-long-topic-dos(9395) | View |
4926 | CVE-2002-0535 | Candidate | Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title. | Modified (20050527) | ACCEPT(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall | Christey> ADDREF BID:4561 | URL:http://www.securityfocus.com/bid/4561 | View |
Page 521 of 20943, showing 5 records out of 104715 total, starting on record 2601, ending on 2605