CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5677 | CVE-2002-1293 | Candidate | The Microsoft Java implementation, as used in Internet Explorer, provides a public load0() method for the CabCracker class (com.ms.vm.loader.CabCracker), which allows remote attackers to bypass the security checks that are performed by the load() method. | Modified (20050610) | ACCEPT(2) Baker, Green | NOOP(2) Cole, Cox | REVIEWING(1) Wall | CHANGE> [Baker changed vote from MODIFY to ACCEPT] | View |
5678 | CVE-2002-1294 | Candidate | The Microsoft Java implementation, as used in Internet Explorer, can provide HTML object references to applets via Javascript, which allows remote attackers to cause a denial of service (crash due to illegal memory accesses) and possibly conduct other unauthorized activities via an applet that uses those references to access proprietary Microsoft methods. | Modified (20050601) | ACCEPT(2) Baker, Green | NOOP(2) Cole, Cox | REVIEWING(1) Wall | View | |
5653 | CVE-2002-1269 | Candidate | Unknown vulnerability in NetInfo Manager application in Mac OS X 10.2.2 allows local users to access restricted parts of a filesystem. | Proposed (20030317) | ACCEPT(2) Baker, Green | NOOP(3) Cole, Cox, Wall | View | |
5593 | CVE-2002-1209 | Candidate | Directory traversal vulnerability in SolarWinds TFTP Server 5.0.55, and possibly earlier, allows remote attackers to read arbitrary files via ".." (dot-dot backslash) sequences in a GET request. | Modified (20071101) | ACCEPT(2) Baker, Green | NOOP(3) Cole, Cox, Wall | Green> EXPLOIT | View |
5594 | CVE-2002-1210 | Candidate | Qualcomm Eudora 5.1.1, 5.2, and possibly other versions stores email attachments in a predictable location, which allows remote attackers to read arbitrary files via a link that loads an attachment with malicious script into a frame, which then executes the script in the local browser context. | Proposed (20030317) | ACCEPT(2) Baker, Green | NOOP(3) Cole, Cox, Wall | REVIEWING(1) Christey | Green> THERE IS AN AMBIGOUS ACKNOWLEDGEMENT TO iDefense"s REPORTING OF THE ISSUE TO THE VENDOR | Christey> Overlap CVE-2002-0456 ? | View |
Page 792 of 20943, showing 5 records out of 104715 total, starting on record 3956, ending on 3960