CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3631  CVE-2001-0825  Entry  Buffer overflow in internal string handling routines of xinetd before 2.1.8.8 allows remote attackers to execute arbitrary commands via a length argument of zero or less, which disables the length check.        View
3632  CVE-2001-0826  Candidate  Buffer overflows in CesarFTPD 0.98b allows remote attackers to execute arbitrary commands via long arguments to (1) HELP, (2) USER, (3) PASS, (4) PORT, (5) DELE, (6) REST, (7) RMD, or (8) MKD.  Proposed (20011122)  MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall  Frech> XF:cesarftp-long-command-bo(6768)  View
3633  CVE-2001-0827  Candidate  Cerberus FTP server 1.0 - 1.5 allows remote attackers to cause a denial of service (crash) via a large number of "PASV" requests.  Proposed (20011122)  NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | REJECT(1) Frech  Frech> See XF:cerberus-ftp-bo(6728). May also be a dupe with | BID:2901.  View
3634  CVE-2001-0828  Entry  A cross-site scripting vulnerability in Caucho Technology Resin before 1.2.4 allows a malicious webmaster to embed Javascript in a hyperlink that ends in a .jsp extension, which causes an error message that does not properly quote the Javascript.        View
3635  CVE-2001-0829  Candidate  A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error message.  Proposed (20011122)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(6) Armstrong, Bishop, Christey, Cole, Foat, Wall  Frech> XF:java-servlet-crosssite-scripting(6793) | Christey> CERT-VN:VU#672683 | URL:http://www.kb.cert.org/vuls/id/672683  View

Page 727 of 20943, showing 5 records out of 104715 total, starting on record 3631, ending on 3635

Actions