CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3312  CVE-2001-0495  Entry  Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.        View
3824  CVE-2001-1020  Entry  edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shell metacharacters in the userfile_name parameter, which is sent unfiltered to the PHP passthru function.        View
4080  CVE-2001-1276  Entry  ispell before 3.1.20 allows local users to overwrite files of other users via a symlink attack on a temporary file.        View
5104  CVE-2002-0714  Entry  FTP proxy in Squid before 2.4.STABLE6 does not compare the IP addresses of control and data connections with the FTP server, which allows remote attackers to bypass firewall rules or spoof FTP server responses.        View
5616  CVE-2002-1232  Entry  Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.        View

Page 577 of 20943, showing 5 records out of 104715 total, starting on record 2881, ending on 2885

Actions