CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4626 | CVE-2002-0234 | Candidate | NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections. | Proposed (20020502) | ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall | View | |
4627 | CVE-2002-0235 | Candidate | Castelle FaxPress, possibly 6.3 and other versions, when configured to use the Network print queue, allows attackers to obtain the username and password by submitting an incorrect login, which causes Faxpress to leak the correct username and password in plaintext in an error event. | Proposed (20020502) | ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall | View | |
4628 | CVE-2002-0236 | Candidate | Lucent VitalSuite 8.0 through 8.2, including VitalNet, VitalEvent, and VitalHelp/VitalAnalysis, allows remote attackers to bypass authentication via a direct HTTP request to the VsSetCookie.exe program, which returns a valid cookie for the desired user. | Proposed (20020502) | ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall | View | |
4629 | CVE-2002-0237 | Entry | Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a flood of large ICMP ping packets. | View | |||
4630 | CVE-2002-0238 | Candidate | Cross-site scripting vulnerability in web administration interface for NetGear RT314 and RT311 Gateway Routers allows remote attackers to execute arbitrary script on another client via a URL that contains the script. | Proposed (20020502) | ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall | View |
Page 926 of 20943, showing 5 records out of 104715 total, starting on record 4626, ending on 4630