CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4816  CVE-2002-0424  Entry  efingerd 1.61 and earlier, when configured without the -u option, executes .efingerd files as the efingerd user (typically "nobody"), which allows local users to gain privileges as the efingerd user by modifying their own .efingerd file and running finger.        View
4817  CVE-2002-0425  Entry  mIRC DCC server protocol allows remote attackers to gain sensitive information such as alternate IRC nicknames via a "100 testing" message in a DCC connection request that cannot be ignored or canceled by the user, which may leak the alternate nickname in a response message.        View
4818  CVE-2002-0426  Candidate  VPN Server module in Linksys EtherFast BEFVP41 Cable/DSL VPN Router before 1.40.1 reduces the key lengths for keys that are supplied via manual key entry, which makes it easier for attackers to crack the keys.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Alderson    View
4819  CVE-2002-0427  Candidate  Buffer overflows in fpexec in mod_frontpage before 1.6.1 may allow attackers to gain root privileges.  Proposed (20020611)  ACCEPT(4) Alderson, Baker, Cole, Frech | MODIFY(1) Cox | NOOP(2) Foat, Wall  Cox> The description should say "improved mod_frontpage" as there | are two Frontpage modules for Apache, the offical one and this one.  View
4820  CVE-2002-0428  Candidate  Check Point FireWall-1 SecuRemote/SecuClient 4.0 and 4.1 allows clients to bypass the "authentication timeout" by modifying the to_expire or expire values in the client"s users.C configuration file.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Alderson    View

Page 964 of 20943, showing 5 records out of 104715 total, starting on record 4816, ending on 4820

Actions