CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4981  CVE-2002-0590  Candidate  Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and steal cookies as other IcrediBB users via the (1) title or (2) body of posts.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall    View
4982  CVE-2002-0591  Candidate  Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall    View
4983  CVE-2002-0592  Candidate  AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the intended user.  Modified (20050528)  MODIFY(1) Frech | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall  Frech> XF:aim-hijack-connection(8931)  View
4984  CVE-2002-0593  Candidate  Buffer overflow in Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long channel name in an IRC URI.  Modified (20071113)  ACCEPT(3) Baker, Cole, Cox | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:mozilla-netscape-irc-bo(8976) | CHANGE> [Cox changed vote from REVIEWING to ACCEPT]  View
4985  CVE-2002-0594  Entry  Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect.        View

Page 997 of 20943, showing 5 records out of 104715 total, starting on record 4981, ending on 4985

Actions