CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4596  CVE-2002-0204  Candidate  Buffer overflow in GNU Chess (gnuchess) 5.02 and earlier, if modified or used in a networked capacity contrary to its own design as a single-user application, may allow local or remote attackers to execute arbitrary code via a long command.  Proposed (20020502)  NOOP(2) Cole, Foat | REJECT(1) Wall | REVIEWING(1) Green  Green> The issue of modifying code and/or using code for purposes other than intended raises the hypothetical (albeit ridiculous) prospect of having to classify vulnerabilities within gcc, since one could develop malicious code using the compiler.  View
4597  CVE-2002-0205  Candidate  Cross-site scripting (CSS) vulnerability in error.asp for Plumtree Corporate Portal 3.5 through 4.5 allows remote attackers to execute arbitrary script on other clients via the "Description" parameter.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4598  CVE-2002-0206  Candidate  index.php in Francisco Burzi PHP-Nuke 5.3.1 and earlier, and possibly other versions before 5.5, allows remote attackers to execute arbitrary PHP code by specifying a URL to the malicious code in the file parameter.  Modified (20050326)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4599  CVE-2002-0207  Entry  Buffer overflow in Real Networks RealPlayer 8.0 and earlier allows remote attackers to execute arbitrary code via a header length value that exceeds the actual length of the header.        View
4600  CVE-2002-0208  Candidate  PGP Security PGPfire 7.1 for Windows alters the system"s TCP/IP stack and modifies packets in ICMP error messages in a way that allows remote attackers to determine that the system is running PGPfire.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View

Page 920 of 20943, showing 5 records out of 104715 total, starting on record 4596, ending on 4600

Actions