CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4846  CVE-2002-0454  Entry  Qpopper (aka in.qpopper or popper) 4.0.3 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a very large string, which causes an infinite loop.        View
4847  CVE-2002-0455  Candidate  IncrediMail stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.  Proposed (20020611)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall  Green> INCLUSION RATIONALE IS A REASONABLE APROACH  View
4848  CVE-2002-0456  Candidate  Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.  Proposed (20020611)  ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Christey  Green> INCLUSION RATIONALE IS A REASONABLE APPROACH | Christey> Overlap CVE-2002-1210 ?  View
4849  CVE-2002-0457  Candidate  Cross-site scripting vulnerability in signgbook.php for BG GuestBook 1.0 allows remote attackers to execute arbitrary Javascript via encoded tags such as <, >, and & in fields such as (1) name, (2) email, (3) AIM screen name, (4) website, (5) location, or (6) message.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Cox, Foat, Green, Wall    View
4850  CVE-2002-0458  Candidate  Cross-site scripting vulnerability in News-TNK 1.2.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter.  Modified (20050706)  ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall    View

Page 970 of 20943, showing 5 records out of 104715 total, starting on record 4846, ending on 4850

Actions