CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4176  CVE-2001-1372  Entry  Oracle 9i Application Server 1.0.2 allows remote attackers to obtain the physical path of a file under the server root via a request for a non-existent .JSP file, which leaks the pathname in an error message.        View
4177  CVE-2001-1373  Entry  MailSafe in Zone Labs ZoneAlarm 2.6 and earlier and ZoneAlarm Pro 2.6 and 2.4 does not block prohibited file types with long file names, which allows remote attackers to send potentially dangerous attachments.        View
4178  CVE-2001-1374  Entry  expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.        View
4179  CVE-2001-1375  Entry  tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory.        View
4180  CVE-2001-1376  Candidate  Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.  Proposed (20020611)  ACCEPT(5) Alderson, Cole, Cox, Frech, Green | NOOP(2) Foat, Wall    View

Page 836 of 20943, showing 5 records out of 104715 total, starting on record 4176, ending on 4180

Actions