CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3052  CVE-2001-0231  Candidate  Directory traversal vulnerability in newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via a .. in the "t" parameter.  Modified (20050509)  ACCEPT(1) Frech | NOOP(2) Lawler, Ziese    View
3316  CVE-2001-0499  Candidate  Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3) SERVICES, (4) TRC_FILE, (5) SAVE_CONFIG, or (6) RELOAD.  Modified (20050509)  ACCEPT(3) Armstrong, Cole, Ziese | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall  Frech> XF:oracle-tns-listener-bo(6758) | CONFIRM:http://otn.oracle.com/deploy/security/pdf/nai_net8_bof.pdf | Christey> CERT:CA-2001-16 | URL:http://www.cert.org/advisories/CA-2001-16.html | CIAC:L-108 | URL:http://ciac.llnl.gov/ciac/bulletins/l-108.shtml | CERT-VN:VU#620495 | URL:http://www.kb.cert.org/vuls/id/620495 | BID:2941 | URL:http://www.securityfocus.com/bid/2941 | Christey> Consider adding BID:2941 | Christey> BUGTRAQ:20021126 Oracle TNS SEH Exploit | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=103833206805744&w=2 | Christey> CONFIRM:http://otn.oracle.com/deploy/security/pdf/nai_net8_bof.pdf  View
3063  CVE-2001-0242  Candidate  Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the ".ASX Buffer Overrun" vulnerability as discussed in MS:MS00-090.  Modified (20050509)  ACCEPT(6) Baker, Cole, Magdych, Wall, Williams, Ziese | MODIFY(1) Frech | NOOP(1) Renaud  Frech> XF:mediaplayer-asx-bo(5574)  View
3322  CVE-2001-0505  Candidate  Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service.  Modified (20050509)  ACCEPT(6) Armstrong, Baker, Cole, Foat, Oliver, Wall | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:sfu-telnet-dos(6883) | XF:sfu-nfs-dos(6882) | Christey> BID:3090 | URL:http://www.securityfocus.com/bid/3090 | BID:3089 | URL:http://www.securityfocus.com/bid/3089  View
8474  CVE-2004-0046  Candidate  Cross-site scripting (XSS) vulnerability in SnapStream PVS LITE allows remote attackers to inject arbitrary web script or HTML via a GET request containing a terminating """ (double quote) character.  Modified (20050430)  ACCEPT(2) Armstrong, Baker | NOOP(4) Cole, Cox, Wall, Williams  Williams> insufficient data.  View

Page 532 of 20943, showing 5 records out of 104715 total, starting on record 2656, ending on 2660

Actions