NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80216 | CVE-2002-1235 | The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in KTH Kerberos 5 (Heimdal) before 0.5.1 when compiled with Kerberos 4 support, does not properly verify the length field of a request, which allows remote attackers to execute arbitrary code via a buffer overflow attack. | 2 | 10 | High | 2017-01-05 | 2016-10-17 | View | |
80217 | CVE-2002-1236 | The remote management web server for Linksys BEFSR41 EtherFast Cable/DSL Router before firmware 1.42.7 allows remote attackers to cause a denial of service (crash) via an HTTP request to Gozila.cgi without any arguments. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View | |
80218 | CVE-2002-1238 | Peter Sandvik's Simple Web Server 0.5.1 and earlier allows remote attackers to bypass access restrictions for files via an HTTP request with a sequence of multiple / (slash) characters such as http://www.example.com///file/. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
80219 | CVE-2002-1239 | QNX Neutrino RTOS 6.2.0 uses the PATH environment variable to find and execute the cp program while operating at raised privileges, which allows local users to gain privileges by modifying the PATH to point to a malicious cp program. | 2 | 7.2 | High | 2017-01-05 | 2016-10-17 | View | |
80220 | CVE-2002-1242 | SQL injection vulnerability in PHP-Nuke before 6.0 allows remote authenticated users to modify the database and gain privileges via the "bio" argument to modules.php. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View |
Page 1110 of 17672, showing 5 records out of 88360 total, starting on record 5546, ending on 5550