CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4136 | CVE-2001-1332 | Candidate | Buffer overflows in Linux CUPS before 1.1.6 may allow remote attackers to execute arbitrary code. | Proposed (20020502) | ACCEPT(3) Cole, Cox, Green | MODIFY(1) Frech | NOOP(2) Foat, Wall | CHANGE> [Cox changed vote from REVIEWING to ACCEPT] | Cox> ADDREF: RHSA-2002:032 | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:cups-password-bo(9997) | View |
4137 | CVE-2001-1333 | Candidate | Linux CUPS before 1.1.6 does not securely handle temporary files, possibly due to a symlink vulnerability that could allow local users to overwrite files. | Proposed (20020502) | ACCEPT(3) Cole, Cox, Green | MODIFY(1) Frech | NOOP(2) Foat, Wall | CHANGE> [Cox changed vote from REVIEWING to ACCEPT] | Cox> ADDREF: RHSA-2002:032 | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:cups-tmpfile-symlink(9998) | Correction SUSE:SuSE-SA:2002:005 should be | SUSE:SuSE-SA:2001:05 | View |
4138 | CVE-2001-1334 | Entry | Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating a block and specifying the target file as the source URL. | View | |||
4139 | CVE-2001-1335 | Candidate | Directory traversal vulnerability in CesarFTP 0.98b and earlier allows remote authenticated users (such as anonymous) to read arbitrary files via a GET with a filename that contains a ...%5c (modified dot dot). | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
4140 | CVE-2001-1336 | Candidate | CesarFTP 0.98b and earlier stores usernames and passwords in plaintext in the settings.ini file, which allows attackers to gain privileges. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View |
Page 828 of 20943, showing 5 records out of 104715 total, starting on record 4136, ending on 4140