CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4947 | CVE-2002-0556 | Candidate | Directory traversal vulnerability in Quik-Serv HTTP server 1.1B allows remote attackers to read arbitrary files via a .. (dot dot) in a URL. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall | View | |
4949 | CVE-2002-0558 | Candidate | Directory traversal vulnerability in TYPSoft FTP server 0.97.1 and earlier allows a remote authenticated user (possibly anonymous) to list arbitrary directories via a .. in a LIST (ls) command ending in wildcard *.* characters. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall | View | |
4849 | CVE-2002-0457 | Candidate | Cross-site scripting vulnerability in signgbook.php for BG GuestBook 1.0 allows remote attackers to execute arbitrary Javascript via encoded tags such as <, >, and & in fields such as (1) name, (2) email, (3) AIM screen name, (4) website, (5) location, or (6) message. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Cox, Foat, Green, Wall | View | |
3901 | CVE-2001-1097 | Candidate | Cisco routers and switches running IOS 12.0 through 12.2.1 allows a remote attacker to cause a denial of service via a flood of UDP packets. | Proposed (20020315) | ACCEPT(2) Cole, Frech | NOOP(5) Armstrong, Baker, Foat, Green, Wall | REVIEWING(1) Ziese | Green> TOO VAGUE | Frech> XF:cisco-ios-udp-dos(6319) should be | XF:cisco-ios-udp-dos(6913). URL is correct. | CHANGE> [Baker changed vote from REVIEWING to NOOP] | View |
5728 | CVE-2002-1344 | Candidate | Directory traversal vulnerability in wget before 1.8.2-4 allows a remote FTP server to create or overwrite files as the wget user via filenames containing (1) /absolute/path or (2) .. (dot dot) sequences. | Modified (20071129) | ACCEPT(2) Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:256 | View |
Page 835 of 20943, showing 5 records out of 104715 total, starting on record 4171, ending on 4175