VYPR

CVEs

343,267 total · page 6718 of 6,866

  • CVE-2003-0835Nov 17, 2003
    risk 0.03cvss epss 0.05

    Multiple buffer overflows in asf_http_request of MPlayer before 0.92 allows remote attackers to execute arbitrary code via an ASX header with a long hostname.

  • CVE-2003-0836Nov 17, 2003
    risk 0.00cvss epss 0.02

    Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 before Fixpak 10 and 10a, and 8.1 before Fixpak 2, allows attackers with "Connect" privileges to execute arbitrary code via a LOAD command.

  • CVE-2003-0837Nov 17, 2003
    risk 0.00cvss epss 0.02

    Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 for Windows, before Fixpak 10a, allows attackers with "Connect" privileges to execute arbitrary code via the INVOKE command.

  • CVE-2003-0838Nov 17, 2003
    risk 0.06cvss epss 0.35

    Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserting ActiveX object code with a "data" tag pointing to the malicious code, which Internet Explorer treats as HTML or Javascript, but…

  • CVE-2003-0839Nov 17, 2003
    risk 0.01cvss epss 0.12

    Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a "shell:" link.

  • CVE-2003-0840Nov 17, 2003
    risk 0.03cvss epss 0.01

    Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable.

  • CVE-2003-0841Nov 17, 2003
    risk 0.00cvss epss 0.02

    The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request.

  • CVE-2003-0842Nov 17, 2003
    risk 0.03cvss epss 0.04

    Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.

  • CVE-2003-0843Nov 17, 2003
    risk 0.00cvss epss 0.02

    Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request…

  • CVE-2003-0844HigNov 17, 2003
    risk 0.46cvss 7.1epss 0.00

    mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode without the Apache log, allows local users to overwrite arbitrary files via (1) a symlink attack on predictable temporary filenames on Unix systems, or (2) an NTFS hard link on…

  • CVE-2003-0845Nov 17, 2003
    risk 0.04cvss epss 0.15

    Unknown vulnerability in the HSQLDB component in JBoss 3.2.1 and 3.0.8 on Java 1.4.x platforms, when running in the default configuration, allows remote attackers to conduct unauthorized activities and possibly execute arbitrary code via certain SQL statements to (1) TCP port…

  • CVE-2003-0846Nov 17, 2003
    risk 0.00cvss epss 0.00

    SuSEconfig.javarunt in the javarunt package on SuSE Linux 7.3Pro allows local users to overwrite arbitrary files via a symlink attack on the .java_wrapper temporary file.

  • CVE-2003-0847Nov 17, 2003
    risk 0.03cvss epss 0.01

    SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.

  • CVE-2003-0848Nov 17, 2003
    risk 0.03cvss epss 0.01

    Heap-based buffer overflow in main.c of slocate 2.6, and possibly other versions, may allow local users to gain privileges via a modified slocate database that causes a negative "pathlen" value to be used.

  • CVE-2003-0849Nov 17, 2003
    risk 0.04cvss epss 0.11

    Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain packets with modified length values, which is trusted by the ReceiveTransaction function when using a buffer provided by the BusyWithConnection function.

  • CVE-2003-0850Nov 17, 2003
    risk 0.00cvss epss 0.04

    The TCP reassembly functionality in libnids before 1.18 allows remote attackers to cause "memory corruption" and possibly execute arbitrary code via "overlarge TCP packets."

  • CVE-2003-0852Nov 17, 2003
    risk 0.00cvss epss 0.01

    Format string vulnerability in send_message.c for Sylpheed-claws 0.9.4 through 0.9.6 allows remote SMTP servers to cause a denial of service (crash) in sylpheed via format strings in an error message.

  • CVE-2003-0853Nov 17, 2003
    risk 0.04cvss epss 0.10

    An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.

  • CVE-2003-0854Nov 17, 2003
    risk 0.03cvss epss 0.01

    ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls, such as wu-ftpd.

  • CVE-2003-0860Nov 17, 2003
    risk 0.00cvss epss 0.02

    Buffer overflows in PHP before 4.3.3 have unknown impact and unknown attack vectors.

  • CVE-2003-0861Nov 17, 2003
    risk 0.00cvss epss 0.01

    Integer overflows in (1) base64_encode and (2) the GD library for PHP before 4.3.3 have unknown impact and unknown attack vectors.

  • CVE-2003-0863Nov 17, 2003
    risk 0.04cvss epss 0.07

    The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file…

  • CVE-2003-0864Nov 17, 2003
    risk 0.03cvss epss 0.04

    Buffer overflow in m_join in channel.c for IRCnet IRCD 2.10.x to 2.10.3p3 allows remote attackers to cause a denial of service.

  • CVE-2003-0865Nov 17, 2003
    risk 0.04cvss epss 0.14

    Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a long request.

  • CVE-2003-0866Nov 17, 2003
    risk 0.06cvss epss 0.33

    The Catalina org.apache.catalina.connector.http package in Tomcat 4.0.x up to 4.0.3 allows remote attackers to cause a denial of service via several requests that do not follow the HTTP protocol, which causes Tomcat to reject later requests.

  • CVE-2003-0870Nov 17, 2003
    risk 0.04cvss epss 0.15

    Heap-based buffer overflow in Opera 7.11 and 7.20 allows remote attackers to execute arbitrary code via an HREF with a large number of escaped characters in the server name.

  • CVE-2003-0872Nov 17, 2003
    risk 0.00cvss epss 0.00

    Certain scripts in OpenServer before 5.0.6 allow local users to overwrite files and conduct other unauthorized activities via a symlink attack on temporary files.

  • CVE-2003-0874Nov 17, 2003
    risk 0.00cvss epss 0.01

    Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized activities via (1) the cat parameter in faq.php, (2) the article parameter in faq.php, (3) the tickedid parameter in view.php, and (4) the…

  • CVE-2003-0875Nov 17, 2003
    risk 0.00cvss epss 0.00

    Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.

  • CVE-2003-0894Nov 17, 2003
    risk 0.00cvss epss 0.01

    Buffer overflow in the (1) oracle and (2) oracleO programs in Oracle 9i Database 9.0.x and 9.2.x before 9.2.0.4 allows local users to execute arbitrary code via a long command line argument.

  • CVE-2003-0896Nov 17, 2003
    risk 0.04cvss epss 0.14

    The loadClass method of the sun.applet.AppletClassLoader class in the Java Virtual Machine (JVM) in Sun SDK and JRE 1.4.1_03 and earlier allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a loaded class name that contains "/" (slash) instead of…

  • CVE-2003-0897Nov 17, 2003
    risk 0.00cvss epss 0.02

    "Shatter" vulnerability in CommCtl32.dll in Windows XP may allow local users to execute arbitrary code by sending (1) BCM_GETTEXTMARGIN or (2) BCM_SETTEXTMARGIN button control messages to privileged applications.

  • CVE-2003-0898Nov 17, 2003
    risk 0.03cvss epss 0.01

    IBM DB2 7.2 before FixPak 10a, and earlier versions including 7.1, allows local users to overwrite arbitrary files and gain privileges via a symlink attack on (1) db2job and (2) db2job2.

  • CVE-2003-0626Nov 13, 2003
    risk 0.00cvss epss 0.02

    psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to read arbitrary files via the (1) headername or (2) footername arguments.

  • CVE-2003-1141Nov 4, 2003
    risk 0.08cvss epss 0.68

    Buffer overflow in NIPrint 4.10 allows remote attackers to execute arbitrary code via a long string to TCP port 515.

  • CVE-2003-1144Nov 4, 2003
    risk 0.01cvss epss 0.07

    Buffer overflow in the log viewing interface in Perception LiteServe 1.25 through 2.2 allows remote attackers to execute arbitrary code via a GET request with a long file name.

  • CVE-2002-1570Nov 3, 2003
    risk 0.03cvss epss 0.06

    Heap-based buffer overflow in snmpnetstat for ucd-snmp 4.2.3 and earlier, and net-snmp, allows remote attackers to execute arbitrary code via multiple getnextrequest PDU messages with conflicting ifindex variables, which cause snmpnetstat to write variable data past the end of…

  • CVE-2003-0542Nov 3, 2003
    risk 0.01cvss epss 0.13

    Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.

  • CVE-2003-0683Nov 3, 2003
    risk 0.00cvss epss 0.01

    NFS in SGI 6.5.21m and 6.5.21f does not perform access checks in certain configurations when an /etc/exports entry uses wildcards without any hostnames or groups, which could allow attackers to bypass intended restrictions.

  • CVE-2003-0789Nov 3, 2003
    risk 0.00cvss epss 0.12

    mod_cgid in Apache before 2.0.48, when using a threaded MPM, does not properly handle CGI redirect paths, which could cause Apache to send the output of a CGI program to the wrong client.

  • CVE-2003-0855Nov 3, 2003
    risk 0.00cvss epss 0.02

    Pan 0.13.3 and earlier allows remote attackers to cause a denial of service (crash) via a news post with a long author email address.

  • CVE-2003-0871Nov 3, 2003
    risk 0.00cvss epss 0.01

    Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."

  • CVE-2003-0876Nov 3, 2003
    risk 0.00cvss epss 0.00

    Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions than intended.

  • CVE-2003-0877Nov 3, 2003
    risk 0.00cvss epss 0.00

    Mac OS X before 10.3 with core files enabled allows local users to overwrite arbitrary files and read core files via a symlink attack on core files that are created with predictable names in the /cores directory.

  • CVE-2003-0878Nov 3, 2003
    risk 0.00cvss epss 0.00

    slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.

  • CVE-2003-0880Nov 3, 2003
    risk 0.00cvss epss 0.00

    Unknown vulnerability in Mac OS X before 10.3 allows local users to access Dock functions from behind Screen Effects when Full Keyboard Access is enabled using the Keyboard pane in System Preferences.

  • CVE-2003-0881Nov 3, 2003
    risk 0.00cvss epss 0.01

    Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.

  • CVE-2003-0882Nov 3, 2003
    risk 0.00cvss epss 0.01

    Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.

  • CVE-2003-0883Nov 3, 2003
    risk 0.00cvss epss 0.00

    The System Preferences capability in Mac OS X before 10.3 allows local users to access secure Preference Panes for a short period after an administrator has authenticated to the system.

  • CVE-2003-0895Nov 3, 2003
    risk 0.00cvss epss 0.01

    Buffer overflow in the Mac OS X kernel 10.2.8 and earlier allows local users, and possibly remote attackers, to cause a denial of service (crash), access portions of memory, and possibly execute arbitrary code via a long command line argument (argv[]).