CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3291 | CVE-2001-0474 | Entry | Utah-glx in Mesa before 3.3-14 on Mandrake Linux 7.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/glxmemory file. | View | |||
3292 | CVE-2001-0475 | Entry | index.php in Jelsoft vBulletin does not properly initialize a PHP variable that is used to store template information, which allows remote attackers to execute arbitrary PHP code via special characters in the templatecache parameter. | View | |||
3293 | CVE-2001-0476 | Candidate | Multiple buffer overflows in s.cgi program in Aspseek search engine 1.03 and earlier allow remote attackers to execute arbitrary commands via (1) a long HTTP query string, or (2) a long tmpl parameter. | Modified (20051126) | ACCEPT(5) Baker, Cole, Frech, Oliver, Ziese | NOOP(2) Christey, Wall | Christey> Fix typo: "paramater" | Christey> fix typo: "paramatar" | View |
3294 | CVE-2001-0477 | Candidate | Vulnerability in WebCalendar 0.9.26 allows remote command execution. | Proposed (20010524) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Balinsky, Wall, Ziese | REVIEWING(1) Williams | Frech> XF;webcalendar-execute-commands(6486) | Balinsky> DNS domain of vendor site listed in the advisory no longer exists. | CHANGE> [Balinsky changed vote from NOOP to REVIEWING] | Balinsky> My mistake. It was the ADVISORY site that no longer exists. Not the vendor. | CHANGE> [Balinsky changed vote from REVIEWING to NOOP] | Balinsky> Could not find specific acknowledgement on vendor site. Only | method of validation on the site is slogging through source code. | View |
3295 | CVE-2001-0478 | Candidate | Directory traversal vulnerability in phpMyAdmin 2.2.0 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script. | Proposed (20010524) | ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(4) Christey, Renaud, Wall, Ziese | REVIEWING(1) Williams | Frech> XF:phpmyadmin-sqlphp-include-file(6483) | Christey> Double-check the version number - is it 2.1.0 or 2.2.0? | CONFIRM:http://phpmyadmin.sourceforge.net/ChangeLog.txt | Item 2001-04-28 says "applied security patch from [Secure | Reality] | The patch implies that tbl_replace.php was also affected. | View |
Page 659 of 20943, showing 5 records out of 104715 total, starting on record 3291, ending on 3295