CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4500  CVE-2002-0106  Candidate  BEA Systems Weblogic Server 6.1 allows remote attackers to cause a denial of service via a series of requests to .JSP files that contain an MS-DOS device name.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
4502  CVE-2002-0108  Candidate  Allaire Forums 2.0.4 and 2.0.5 and Forums! 3.0 and 3.1 allows remote authenticated users to spoof messages as other users by modifying the hidden form fields for the name and e-mail address.  Modified (20050313)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
3991  CVE-2001-1187  Candidate  csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
3993  CVE-2001-1189  Candidate  IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View
4002  CVE-2001-1198  Candidate  RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.  Modified (20090302)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Foat, Wall, Ziese    View

Page 870 of 20943, showing 5 records out of 104715 total, starting on record 4346, ending on 4350

Actions