CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4506  CVE-2002-0112  Candidate  Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL.  Modified (20050707)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Green> Vendor has released upgrades | Frech> XF:eserv-protected-file-access(7849) | ADDREF:http://online.securityfocus.com/archive/1/249210  View
4507  CVE-2002-0113  Candidate  EMC NetWorker (formerly Legato NetWorker) before 7.0 stores log files in the /nsr/logs/ directory with world-readable permissions, which allows local users to read sensitive information and possibly gain privileges. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall    View
4508  CVE-2002-0114  Candidate  EMC NetWorker (formerly Legato NetWorker) before 7.0 stores passwords in plaintext in the daemon.log file, which allows local users to gain privileges by reading the password from the file. NOTE: this was originally reported for Legato NetWorker 6.1 on the Solaris 7 platform.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall    View
4509  CVE-2002-0115  Entry  Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of service (crash and core dump) via a malformed ICMP packet.        View
4510  CVE-2002-0116  Candidate  Palm OS 3.5h and possibly other versions, as used in Handspring Visor and Xircom products, allows remote attackers to cause a denial of service via a TCP connect scan, e.g. from nmap.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall  Green> Caused a full reset on a Visor  View

Page 902 of 20943, showing 5 records out of 104715 total, starting on record 4506, ending on 4510

Actions