CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4211  CVE-2001-1408  Candidate  Directory traversal vulnerability in readmsg.php in WebMail 2.0.1 in Cobalt Qube 3 allows remote attackers to read arbitrary files via a .. (dot dot) in the mailbox parameter.  Proposed (20020830)  ACCEPT(2) Frech, Green | NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
4212  CVE-2001-1409  Candidate  dexconf in XFree86 Xserver 4.1.0-2 creates the /dev/dri directory with insecure permissions (666), which allows local users to replace or create files in the root file system.  Assigned (20030611)  None (candidate not yet proposed)    View
4213  CVE-2001-1410  Candidate  Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createPopup method, which could allow attackers to simulate a victim"s display and conduct unauthorized activities or steal sensitive data via social engineering.  Assigned (20030715)  None (candidate not yet proposed)    View
4214  CVE-2001-1411  Candidate  Format string vulnerability in gm4 (aka m4) on Mac OS X may allow local users to gain privileges if gm4 is called by setuid programs.  Assigned (20031023)  None (candidate not yet proposed)    View
4215  CVE-2001-1412  Candidate  nidump on MacOS X before 10.3 allows local users to read the encrypted passwords from the password file by specifying passwd as a command line argument.  Assigned (20031024)  None (candidate not yet proposed)    View

Page 843 of 20943, showing 5 records out of 104715 total, starting on record 4211, ending on 4215

Actions