CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4511  CVE-2002-0117  Entry  Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.        View
4512  CVE-2002-0118  Candidate  Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall    View
4513  CVE-2002-0119  Candidate  Alcatel Speed Touch Home ADSL Modem allows remote attackers to cause a denial of service (reboot) via a network scan with unusual packets, such as nmap with OS detection.  Proposed (20020315)  ACCEPT(2) Frech, Green | NOOP(4) Christey, Cole, Foat, Wall  Christey> According to an email from Alcatel personnel, the ADSL modem | business was sold to TMM (Thomson Multi Media) in 2001; | therefore TMM should be consulted for acknowledgement.  View
4514  CVE-2002-0120  Entry  Apple Palm Desktop 4.0b76 and 4.0b77 creates world-readable backup files and folders when a hotsync is performed, which could allow a local user to obtain sensitive information.        View
4515  CVE-2002-0121  Entry  PHP 4.0 through 4.1.1 stores session IDs in temporary files whose name contains the session ID, which allows local users to hijack web connections.        View

Page 903 of 20943, showing 5 records out of 104715 total, starting on record 4511, ending on 4515

Actions