CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4846 | CVE-2002-0454 | Entry | Qpopper (aka in.qpopper or popper) 4.0.3 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a very large string, which causes an infinite loop. | View | |||
4847 | CVE-2002-0455 | Candidate | IncrediMail stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | Proposed (20020611) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | Green> INCLUSION RATIONALE IS A REASONABLE APROACH | View |
4848 | CVE-2002-0456 | Candidate | Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames. | Proposed (20020611) | ACCEPT(3) Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Christey | Green> INCLUSION RATIONALE IS A REASONABLE APPROACH | Christey> Overlap CVE-2002-1210 ? | View |
4849 | CVE-2002-0457 | Candidate | Cross-site scripting vulnerability in signgbook.php for BG GuestBook 1.0 allows remote attackers to execute arbitrary Javascript via encoded tags such as <, >, and & in fields such as (1) name, (2) email, (3) AIM screen name, (4) website, (5) location, or (6) message. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Cox, Foat, Green, Wall | View | |
4850 | CVE-2002-0458 | Candidate | Cross-site scripting vulnerability in News-TNK 1.2.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter. | Modified (20050706) | ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | View |
Page 970 of 20943, showing 5 records out of 104715 total, starting on record 4846, ending on 4850