CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2526  CVE-2000-0957  Entry  The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.        View
3806  CVE-2001-1002  Entry  The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure mode when dvips is executed by lpd, which could allow remote attackers to gain privileges by printing a DVI file that contains malicious commands.        View
4574  CVE-2002-0181  Entry  Cross-site scripting vulnerability in status.php3 for IMP 2.2.8 and HORDE 1.2.7 allows remote attackers to execute arbitrary web script and steal cookies of other IMP/HORDE users via the script parameter.        View
5086  CVE-2002-0696  Entry  Microsoft Visual FoxPro 6.0 does not register its associated files with Internet Explorer, which allows remote attackers to execute Visual FoxPro applications without warning via HTML that references specially-crafted filenames.        View
5598  CVE-2002-1214  Entry  Buffer overflow in Microsoft PPTP Service on Windows XP and Windows 2000 allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via a certain PPTP packet with malformed control data.        View

Page 536 of 20943, showing 5 records out of 104715 total, starting on record 2676, ending on 2680

Actions