CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4656  CVE-2002-0264  Candidate  PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.  Modified (20050707)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:powerftp-ftpserver-ini-plaintext(8183)  View
4657  CVE-2002-0265  Entry  Sawmill for Solaris 6.2.14 and earlier creates the AdminPassword file with world-writable permissions, which allows local users to gain privileges by modifying the file.        View
4658  CVE-2002-0266  Candidate  Thunderstone Texis CGI script allows remote attackers to obtain the full path of the web root via a request for a nonexistent file, which generates an error message that includes the full pathname.  Proposed (20020502)  ACCEPT(3) Armstrong, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4659  CVE-2002-0267  Entry  preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the "theme" field followed by the Status::admin command, which causes the Status line to be entered into the password file.        View
4660  CVE-2002-0268  Candidate  Identix BioLogon 3 allows users with physical access to the system to gain administrative privileges by using CTRL-ALT-DEL and running a "Browse" function, which runs Explorer with SYSTEM privileges.  Modified (20050707)  MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall  Frech> XF:biologon3-gina-bypass-authentication(8201) | CONFIRM:http://www.identix.com/support/sp_it.html  View

Page 932 of 20943, showing 5 records out of 104715 total, starting on record 4656, ending on 4660

Actions