267361
|
- |
|
macromedia
|
coldfusion
|
Heap-based buffer overflow in the error-handling mechanism for the IIS ISAPI handler in Macromedia ColdFusion 6.0 allows remote attackers to execute arbitrary via an HTTP GET request with a long .cfm…
|
NVD-CWE-Other
|
CVE-2002-1309
|
2016-10-18 11:25 |
2002-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267362
|
- |
|
double_precision_incorporated
|
courier_mta
|
Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files.
|
NVD-CWE-Other
|
CVE-2002-1311
|
2016-10-18 11:25 |
2002-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267363
|
- |
|
iplanet
|
iplanet_web_server
|
Cross-site scripting (XSS) vulnerability in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows remote attackers to execute web script or HTML as the iPlanet administrator by injecting the…
|
NVD-CWE-Other
|
CVE-2002-1315
|
2016-10-18 11:25 |
2002-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267364
|
- |
|
iplanet
|
iplanet_web_server
|
importInfo in the Admin Server for iPlanet WebServer 4.x, up to SP11, allows the web administrator to execute arbitrary commands via shell metacharacters in the dir parameter, and possibly allows rem…
|
NVD-CWE-Other
|
CVE-2002-1316
|
2016-10-18 11:25 |
2002-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267365
|
- |
|
university_of_washington
|
pine
|
Pine 4.44 and earlier allows remote attackers to cause a denial of service (core dump and failed restart) via an email message with a From header that contains a large number of quotation marks (").
|
NVD-CWE-Other
|
CVE-2002-1320
|
2016-10-18 11:25 |
2002-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267366
|
- |
|
phpwebsite
|
phpwebsite
|
modsecurity.php 1.10 and earlier, in phpWebSite 0.8.2 and earlier, allows remote attackers to execute arbitrary PHP source code via an inc_prefix parameter that points to the malicious code.
|
NVD-CWE-Other
|
CVE-2002-1135
|
2016-10-18 11:24 |
2002-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267367
|
- |
|
hp
|
procurve_switch_4000m
|
The HTTP administration interface for HP Procurve 4000M Switch firmware before C.09.16, with stacking features and remote administration enabled, does not authenticate requests to reset the device, w…
|
NVD-CWE-Other
|
CVE-2002-1147
|
2016-10-18 11:24 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267368
|
- |
|
hp
|
procurve_switch_4000m
|
Successful exploitation requires that stacking features and remote administration are enabled.
|
NVD-CWE-Other
|
CVE-2002-1147
|
2016-10-18 11:24 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267369
|
- |
|
invision_power_services
|
invision_board
|
The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive information such as absolute pathnames, OS information, and…
|
NVD-CWE-Other
|
CVE-2002-1149
|
2016-10-18 11:24 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267370
|
- |
|
microsoft
|
netmeeting
|
The Remote Desktop Sharing (RDS) Screen Saver Protection capability for Microsoft NetMeeting 3.01 through SP2 (4.4.3396) allows attackers with physical access to hijack remote sessions by entering ce…
|
NVD-CWE-Other
|
CVE-2002-1150
|
2016-10-18 11:24 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|