CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4261  CVE-2001-1458  Candidate  Directory traversal vulnerability in Novell GroupWise 5.5 and 6.0 allows remote attackers to read arbitrary files via a request for /servlet/webacc?User.html= that contains "../" (dot dot) sequences and a null character.  Assigned (20050421)  None (candidate not yet proposed)    View
4262  CVE-2001-1459  Candidate  OpenSSH 2.9 and earlier does not initiate a Pluggable Authentication Module (PAM) session if commands are executed with no pty, which allows local users to bypass resource limits (rlimits) set in pam.d.  Assigned (20050421)  None (candidate not yet proposed)    View
4263  CVE-2001-1460  Candidate  SQL injection vulnerability in article.php in PostNuke 0.62 through 0.64 allows remote attackers to bypass authentication via the user parameter.  Assigned (20050421)  None (candidate not yet proposed)    View
4264  CVE-2001-1461  Candidate  Directory traversal vulnerability in WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows attackers to access restricted resources via URL-encoded (1) /.. or (2) .. sequences.  Assigned (20050421)  None (candidate not yet proposed)    View
4265  CVE-2001-1462  Candidate  WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows attackers to cause the WebID agent to enter debug mode via a URL containing null characters, which may allow attackers to obtain sensitive information.  Assigned (20050421)  None (candidate not yet proposed)    View

Page 853 of 20943, showing 5 records out of 104715 total, starting on record 4261, ending on 4265

Actions