CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4896 | CVE-2002-0504 | Candidate | Cross-site scripting vulnerability in Citrix NFuse 1.6 and earlier does not quote results from the getLastError method, which allows remote attackers to execute script in other clients via the NFuse_Application parameter to (1) launch.jsp or (2) launch.asp. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall | View | |
4897 | CVE-2002-0505 | Entry | Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers to cause a denial of service (crash and reload) via a series of authentication failures, e.g. via incorrect passwords. | View | |||
4898 | CVE-2002-0506 | Entry | Buffer overflow in newt.c of newt windowing library (libnewt) 0.50.33 and earlier may allow attackers to cause a denial of service or execute arbitrary code in setuid programs that use libnewt. | View | |||
4899 | CVE-2002-0507 | Candidate | An interaction between Microsoft Outlook Web Access (OWA) with RSA SecurID allows local users to bypass the SecurID authentication for a previous user via several submissions of an OWA Authentication request with the proper OWA password for the previous user, which is eventually accepted by OWA. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(3) Armstrong, Cox, Foat | REVIEWING(1) Wall | View | |
4900 | CVE-2002-0508 | Candidate | wwwisis 3.45 and earlier allows remote attackers to execute arbitrary commands and read files via the parameters (1) prolog or (2) epilog. | Proposed (20020611) | ACCEPT(3) Baker, Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall | View |
Page 980 of 20943, showing 5 records out of 104715 total, starting on record 4896, ending on 4900