CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7286 | CVE-2003-0459 | Candidate | KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites. | Assigned (20030626) | None (candidate not yet proposed) | View | |
7287 | CVE-2003-0460 | Candidate | The rotatelogs program on Apache before 1.3.28, for Windows and OS/2 systems, does not properly ignore certain control characters that are received over the pipe, which could allow remote attackers to cause a denial of service. | Assigned (20030626) | None (candidate not yet proposed) | View | |
7288 | CVE-2003-0461 | Candidate | /proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords. | Assigned (20030626) | None (candidate not yet proposed) | View | |
7289 | CVE-2003-0462 | Candidate | A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash). | Assigned (20030626) | None (candidate not yet proposed) | View | |
7290 | CVE-2003-0463 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | Assigned (20030626) | None (candidate not yet proposed) | View |
Page 707 of 20943, showing 5 records out of 104715 total, starting on record 3531, ending on 3535