CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4931  CVE-2002-0540  Candidate  Nortel CVX 1800 is installed with a default "public" community string, which allows remote attackers to read usernames and passwords and modify the CVX configuration.  Modified (20050510)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4932  CVE-2002-0541  Candidate  Buffer overflow in Tivoli Storage Manager TSM (1) Server or Storage Agents 3.1 through 5.1, and (2) the TSM Client Acceptor Service 4.2 and 5.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 1580 or port 1581.  Proposed (20020611)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4933  CVE-2002-0542  Entry  mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode, which could allow local users to gain root privileges via calls to mail in cron.        View
4934  CVE-2002-0543  Entry  Directory traversal vulnerability in Aprelium Abyss Web Server (abyssws) before 1.0.0.2 allows remote attackers to read files outside the web root, including the abyss.conf file, via URL-encoded .. (dot dot) sequences in the HTTP request.        View
4935  CVE-2002-0544  Candidate  Aprelium Abyss Web Server (abyssws) before 1.0.3 stores the administrative console password in plaintext in the abyss.conf file, which allows local users with access to the file to gain privileges.  Proposed (20020611)  ACCEPT(3) Armstrong, Baker, Cole | MODIFY(1) Frech | NOOP(3) Cox, Foat, Wall  Frech> XF:abyss-unicode-directory-traversal(8805)  View

Page 987 of 20943, showing 5 records out of 104715 total, starting on record 4931, ending on 4935

Actions