CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5425  CVE-2002-1037  Candidate  Cross-site scripting vulnerability in Double Choco Latte (DCL) before 20020706 allows remote attackers to inject arbitrary HTML, including script, into web pages via the (1) Ticket# Find, (2) Priorities, (3) Severities, (4) Projects, (5) WO# Find, (6) Departments and (7) Users features.  Proposed (20020830)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
5426  CVE-2002-1038  Candidate  Double Choco Latte (DCL) before 20020706 does not properly verify if a file was uploaded, which allows remote attackers to conduct certain operations on arbitrary files via the (1) Projects: Upload File Attachment or (2) Work Orders: Import features.  Proposed (20020830)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4931  CVE-2002-0540  Candidate  Nortel CVX 1800 is installed with a default "public" community string, which allows remote attackers to read usernames and passwords and modify the CVX configuration.  Modified (20050510)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4932  CVE-2002-0541  Candidate  Buffer overflow in Tivoli Storage Manager TSM (1) Server or Storage Agents 3.1 through 5.1, and (2) the TSM Client Acceptor Service 4.2 and 5.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 1580 or port 1581.  Proposed (20020611)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4703  CVE-2002-0311  Candidate  Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell metacharacters in the -c argument for (1) in scoadminreg.cgi or (2) service_action.cgi.  Proposed (20020502)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View

Page 928 of 20943, showing 5 records out of 104715 total, starting on record 4636, ending on 4640

Actions