NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79471 | CVE-2002-0465 | Directory traversal vulnerability in filemanager.asp for Hosting Controller 1.4.1 and earlier allows remote attackers to read and modify arbitrary files, and execute commands, via a .. (dot dot) in the OpenPath parameter. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
79472 | CVE-2002-0466 | Hosting Controller 1.4.1 and earlier allows remote attackers to browse arbitrary directories via a full C: style pathname in the filepath arguments to (1) Statsbrowse.asp, (2) servubrowse.asp, (3) browsedisk.asp, (4) browsewebalizerexe.asp, or (5) sqlbrowse.asp. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
79473 | CVE-2002-0467 | Buffer overflows in Ecartis (formerly Listar) 1.0.0 before snapshot 20020125 allows remote attackers to execute arbitrary code via (1) address_match() of mystring.c or (2) other functions in tolist.c. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
79474 | CVE-2002-0468 | Buffer overflows in Ecartis (formerly Listar) 1.0.0 in snapshot 20020427 and earlier allow local users to gain privileges via (1) a long command line argument, which is not properly handled in core.c, or possibly via bad uses of sprintf() in (2) moderate.c, (3) lcgi.c, (4) fileapi.c, (5) cookie.c, (6) codes.c, or other files. | 2 | 4.6 | Medium | 2017-01-05 | 2016-10-17 | View | |
79475 | CVE-2002-0469 | Ecartis (formerly Listar) 1.0.0 in snapshot 20020125 and earlier does not properly drop privileges when Ecartis is installed setuid-root, "lock-to-user" is not set, and ecartis is called by certain MTA"s, which could allow local users to gain privileges. | 2 | 7.2 | High | 2017-01-05 | 2008-09-05 | View |
Page 961 of 17672, showing 5 records out of 88360 total, starting on record 4801, ending on 4805