CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3502  CVE-2001-0694  Candidate  Directory traversal vulnerability in WFTPD 3.00 R5 allows a remote attacker to view arbitrary files via a dot dot attack in the CD command.  Proposed (20010829)  MODIFY(1) Frech | NOOP(3) Foat, Wall, Ziese  Frech> XF:wftpd-dir-traverse(5608)  View
3270  CVE-2001-0453  Candidate  Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories.  Proposed (20010524)  ACCEPT(3) Baker, Balinsky, Williams | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese  Frech> XF:webweaver-web-directory-traversal(6476)  View
3269  CVE-2001-0452  Candidate  BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command.  Proposed (20010524)  ACCEPT(4) Baker, Cole, Williams, Ziese | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:webweaver-ftp-path-disclosure(6477)  View
586  CVE-1999-0604  Candidate  An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private information.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Northcutt, Wall  Frech> XF:webstore-misconfig(3861)  View
3032  CVE-2001-0211  Candidate  Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter.  Proposed (20010309)  MODIFY(1) Frech | NOOP(4) Christey, Cole, Lawler, Ziese  Frech> XF:webspirs-cgi-view-files(6101) | Christey> ADDREF BUGTRAQ:20010331 Webspirs remote script explotation | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98608561912120&w=2 | Christey> Mention the webspirs.cgi program specifically; also, should | the version be 3.3.1?  View

Page 58 of 20943, showing 5 records out of 104715 total, starting on record 286, ending on 290

Actions