CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4626  CVE-2002-0234  Candidate  NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View
4627  CVE-2002-0235  Candidate  Castelle FaxPress, possibly 6.3 and other versions, when configured to use the Network print queue, allows attackers to obtain the username and password by submitting an incorrect login, which causes Faxpress to leak the correct username and password in plaintext in an error event.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
4628  CVE-2002-0236  Candidate  Lucent VitalSuite 8.0 through 8.2, including VitalNet, VitalEvent, and VitalHelp/VitalAnalysis, allows remote attackers to bypass authentication via a direct HTTP request to the VsSetCookie.exe program, which returns a valid cookie for the desired user.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View
4629  CVE-2002-0237  Entry  Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a flood of large ICMP ping packets.        View
4630  CVE-2002-0238  Candidate  Cross-site scripting vulnerability in web administration interface for NetGear RT314 and RT311 Gateway Routers allows remote attackers to execute arbitrary script on another client via a URL that contains the script.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View

Page 926 of 20943, showing 5 records out of 104715 total, starting on record 4626, ending on 4630

Actions