CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3126  CVE-2001-0305  Candidate  Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.  Proposed (20010404)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:esone-cgi-directory-traversal(6124)  View
3127  CVE-2001-0306  Candidate  Directory traversal vulnerability in ITAfrica WEBactive HTTP Server 1.00 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.  Proposed (20010404)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:webactive-directory-traversal(6121)  View
3128  CVE-2001-0307  Candidate  Bajie HTTP JServer 0.78, and other versions before 0.80, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that does not exist.  Modified (20080213)  MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | REVIEWING(1) Bishop  Frech> XF:bajie-execute-shell(6117)  View
3129  CVE-2001-0308  Candidate  UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.  Modified (20080213)  MODIFY(1) Frech | NOOP(4) Bishop, Cole, Wall, Ziese  Frech> XF:bajie-directory-traversal(6115)  View
3130  CVE-2001-0309  Entry  inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.        View

Page 626 of 20943, showing 5 records out of 104715 total, starting on record 3126, ending on 3130

Actions