CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3426 | CVE-2001-0613 | Entry | Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request. | View | |||
3427 | CVE-2001-0614 | Candidate | Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL. | Proposed (20010727) | ACCEPT(1) Frech | NOOP(5) Christey, Cole, Foat, Wall, Ziese | REVIEWING(1) Bishop | Christey> Give the particular nature of the constructed URL, i.e. the | command is specified in the VBEXE parameter. | View |
3428 | CVE-2001-0615 | Entry | Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a ".." (dot dot) attack such as "..." or "....". | View | |||
3429 | CVE-2001-0616 | Entry | Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (e.g., GET /aux HTTP/1.0). | View | |||
3430 | CVE-2001-0617 | Candidate | Allied Telesyn AT-AR220e cable/DSL router firmware 1.08a RC14 with the portmapper and the "Virtual Server" enabled can allow a remote attacker to gain access to mapped services even though the single portmappings may be disabled. | Proposed (20010727) | ACCEPT(1) Frech | NOOP(4) Cole, Foat, Wall, Ziese | REVIEWING(1) Bishop | View |
Page 686 of 20943, showing 5 records out of 104715 total, starting on record 3426, ending on 3430