Skip to main content

CWE archive

CWE-203 CVEs

Programmatic archive

759 CVEs tagged with CWE-20318 Critical, 109 High, 541 Medium, 91 Low, 0 Unrated.

CVE-2002-2094

Published Dec 31, 2002

Joe Testa hellbent 01 allows remote attackers to determine the full path of the web root directory via a GET request with a relative path that includes the root's parent, which ge…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0514

Published Aug 12, 2002

PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is differe…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-0515

Published Aug 12, 2002

IPFilter 3.4.25 and earlier sets a different TTL when a port is being filtered than when it is not being filtered, which allows remote attackers to identify filtered ports by comp…

CVSS 5.0 · Medium
Buzz score
12.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2002-0208

Published May 16, 2002

PGP Security PGPfire 7.1 for Windows alters the system's TCP/IP stack and modifies packets in ICMP error messages in a way that allows remote attackers to determine that the syste…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1483

Published Dec 31, 2001

One-Time Passwords In Everything (a.k.a OPIE) 2.32 and 2.4 allows remote attackers to determine the existence of user accounts by printing random passphrases if the user account d…

CVSS 5.0 · Medium
Buzz score
12.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2001-1528

Published Dec 31, 2001

AmTote International homebet program returns different error messages when invalid account numbers and PIN codes are provided, which allows remote attackers to determine the exist…

CVSS 5.0 · Medium
Buzz score
12.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2001-1387

Published Nov 5, 2001

iptables-save in iptables before 1.2.4 records the "--reject-with icmp-host-prohibited" rule as "--reject-with tcp-reset," which causes iptables to generate different responses th…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2000-1117

Published Jan 9, 2001

The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web site operators to determine the existence of files on the c…

CVSS 5.0 · Medium
Buzz score
12.0
OTX pulse activity
Vendor/product tagsBeta · best-effort
Showing 751-759 of 759 CVEsPage 31 of 31