CVE-2002-1551
Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code. Date published : 2003-03-18 http://archives.neohapsis.com/archives/aix/2002-q4/0002.html
Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code. Date published : 2003-03-18 http://archives.neohapsis.com/archives/aix/2002-q4/0002.html
BRS WebWeaver Web Server 1.01 allows remote attackers to bypass password protections for files and directories via an HTTP request containing a "/./" sequence. Date published : 2003-03-18 http://www.securityfocus.com/bid/6041 http://www.securityoffice.net/articles/webweaver/
CooolSoft Personal FTP Server 2.24 allows remote attackers to obtain the absolute pathname of the FTP root via a PWD command, which includes the full path in the response. Date published : 2003-03-18 http://archives.neohapsis.com/archives/bugtraq/2002-10/0142.html
Directory traversal vulnerability in CooolSoft Personal FTP Server 2.24 allows remote attackers to read or modify arbitrary files via .. (dot dot) sequences in the commands (1) LIST (ls), (2) mkdir, (3) put, or...
SolarWinds TFTP server 5.0.55 and earlier allows remote attackers to cause a denial of service (crash) via a large UDP datagram, possibly triggering a buffer overflow. Date published : 2003-03-18 http://www.securityfocus.com/bid/6043 http://archives.neohapsis.com/archives/bugtraq/2002-10/0344.html
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service via long (1) DELE or (2) UIDL arguments. Date published : 2003-03-18 http://www.securityfocus.com/bid/6053 http://archives.neohapsis.com/archives/bugtraq/2002-10/0382.html
Molly IRC bot 0.5 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the $host variable for nslookup.pl, (2) the $to, $from, or $message variables in pop.pl, (3) the $words or...
Secure Webserver 1.1 in Raptor 6.5 and Symantec Enterprise Firewall 6.5.2 allows remote attackers to identify IP addresses of hosts on the internal network via a CONNECT request, which generates different error messages if...
Cross-site scripting (XSS) vulnerability in Jetty JSP servlet engine allows remote attackers to insert arbitrary HTML or script via an HTTP request to a .jsp file whose name contains the malicious script and some...
emumail.cgi in EMU Webmail 5.0 allows remote attackers to determine the full pathname for emumail.cgi via a malformed string containing script, which generates a regular expression matching error that includes the pathname in the...
Cross-site scripting (XSS) vulnerability in emumail.cgi for EMU Webmail 5.0 allows remote attackers to inject arbitrary HTML or script via the email address field. Date published : 2003-03-18 http://www.securityfocus.com/bid/5824 http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0131.html
Directory traversal vulnerability in ASTAware SearchDisk engine for Sun ONE Starter Kit 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack on port (1) 6015 or (2) 6016, or...
Directory traversal vulnerability in Daniel Arenz Mini Server 2.1.6 allows remote attackers to read arbitrary files via (1) ../ (dot-dot slash) or (2) .. (dot-dot backslash) sequences. Date published : 2003-03-18 http://archives.neohapsis.com/archives/bugtraq/2002-10/0181.html http://www.da-home.de/miniserver/update.html
Buffer overflow in PowerFTP FTP server 2.24, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long USER argument. Date published : 2003-03-18...