CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4536  CVE-2002-0142  Candidate  CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of . (dot) characters.  Proposed (20020315)  ACCEPT(3) Cole, Frech, Green | NOOP(4) Balinsky, Christey, Foat, Wall  Christey> VULNWATCH:20020113 Pi3Web Webserver v2.0 Buffer Overflow Vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0015.html  View
4537  CVE-2002-0143  Entry  Buffer overflow in Eterm of Enlightenment Imlib2 1.0.4 and earlier allows local users to execute arbitrary code via a long HOME environment variable.        View
4538  CVE-2002-0144  Candidate  Directory traversal vulnerability in chuid 1.2 and earlier allows remote attackers to change the ownership of files outside of the upload directory via a .. (dot dot) attack.  Proposed (20020315)  ACCEPT(4) Balinsky, Cole, Frech, Green | NOOP(2) Foat, Wall    View
4539  CVE-2002-0145  Candidate  chuid 1.2 and earlier does not properly verify the ownership of files that will be changed, which allows remote attackers to change files owned by other users, such as root.  Modified (20050527)  ACCEPT(3) Balinsky, Cole, Green | MODIFY(1) Frech | NOOP(3) Foat, Wall, Ziese  Frech> XF:chuid-unauthorized-ownership-change(7976)  View
4540  CVE-2002-0146  Entry  fetchmail email client before 5.9.10 does not properly limit the maximum number of messages available, which allows a remote IMAP server to overwrite memory via a message count that exceeds the boundaries of an array.        View

Page 908 of 20943, showing 5 records out of 104715 total, starting on record 4536, ending on 4540

Actions