CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4602  CVE-2002-0210  Candidate  setlicense for TOLIS Group Backup and Restore Utility (BRU) 17.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/brutest.$$ temporary file.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4604  CVE-2002-0212  Candidate  The login for Hosting Controller 1.1 through 1.4.1 returns different error messages when a valid or invalid user is provided, which allows remote attackers to determine the existence of valid usernames and makes it easier to conduct a brute force attack.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4606  CVE-2002-0214  Candidate  Compaq Intel PRO/Wireless 2011B LAN USB Device Driver 1.5.16.0 through 1.5.18.0 stores the 128-bit WEP (Wired Equivalent Privacy) key in plaintext in a registry key with weak permissions, which allows local users to decrypt network traffic by reading the WEP key from the registry key.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4607  CVE-2002-0215  Candidate  Agora.cgi 3.2r through 4.0 while in debug mode allows remote attackers to determine the full pathname of the agora.cgi file by requesting a non-existent .html file, which leaks the pathname in an error message.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4532  CVE-2002-0138  Candidate  CDRDAO 1.1.4 and 1.1.5 allows local users to read arbitrary files via the show-data command.  Proposed (20020315)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall | REVIEWING(1) Frech    View

Page 734 of 20943, showing 5 records out of 104715 total, starting on record 3666, ending on 3670

Actions