CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5328 | CVE-2002-0940 | Candidate | domesticinstall.exe for nCipher MSCAPI CSP 5.50 and 5.54 does not use Operator Card Set protected keys when the user requests them but does not generate the Operator Card Set, which results in a lower protection level than specified by the user (module protection only). | Proposed (20020830) | ACCEPT(3) Baker, Cole, Green | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall | Christey> Add "a different issue than CVE-2002-0939" to emphasize | difference. | Frech> XF:mscapi-csp-domesticinstall-key(10356) | View |
5330 | CVE-2002-0942 | Candidate | Buffer overflows in Lugiment Log Explorer before 3.02 allow attackers with database permissions to execute arbitrary code via long arguments to the extended stored procedures (1) xp_logattach_StartProf, (2) xp_logattach_setport, or (3) xp_logattach. | Proposed (20020830) | ACCEPT(3) Baker, Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
2771 | CVE-2000-1204 | Candidate | Vulnerability in the mod_vhost_alias virtual hosting module for Apache 1.3.9, 1.3.11 and 1.3.12 allows remote attackers to obtain the source code for CGI programs if the cgi-bin directory is under the document root. | Proposed (20020830) | ACCEPT(5) Armstrong, Baker, Cole, Cox, Green | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:apache-modvhostalias-source-disclosure(11088) | View |
5331 | CVE-2002-0943 | Candidate | MetaCart2.sql stores the user database under the web document root without access controls, which allows remote attackers to obtain sensitive information such as passwords and credit card numbers via a direct request for metacart.mdb. | Proposed (20020830) | ACCEPT(1) Frech | NOOP(5) Cole, Cox, Foat, Green, Wall | Frech> XF:shopping-cart-database-access(9816) | View |
2773 | CVE-2000-1206 | Candidate | Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_alias in Apache 1.3.9, allows remote attackers to retrieve arbitrary files. | Proposed (20020830) | ACCEPT(6) Armstrong, Baker, Cole, Cox, Green, Wall | MODIFY(1) Frech | NOOP(1) Foat | Frech> XF:apache-virtualhosting-obtain-files(11139) | View |
Page 74 of 20943, showing 5 records out of 104715 total, starting on record 366, ending on 370