CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4982  CVE-2002-0591  Candidate  Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall    View
1539  CVE-1999-1559  Candidate  Xylan OmniSwitch before 3.2.6 allows remote attackers to bypass the login prompt via a CTRL-D (control d) character, which locks other users out of the switch because it only supports one session at a time.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View
1043  CVE-1999-1063  Candidate  CDomain whois_raw.cgi whois CGI script allows remote attackers to execute arbitrary commands via shell metacharacters in the fqdn parameter.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View
1051  CVE-1999-1071  Candidate  Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which allows local users to gain access to Excite accounts by modifying the file.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View
1076  CVE-1999-1096  Candidate  Buffer overflow in kscreensaver in KDE klock allows local users to gain root privileges via a long HOME environmental variable.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall    View

Page 679 of 20943, showing 5 records out of 104715 total, starting on record 3391, ending on 3395

Actions