| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2003-0635 | 0.00 | — | 0.01 | Aug 27, 2003 | Unknown vulnerability or vulnerabilities in Novell iChain 2.2 before Support Pack 1, with unknown impact, possibly related to unauthorized access to (1) NCPIP.NLM and (2) JSTCP.NLM. | |||
| CVE-2003-0636 | 0.00 | — | 0.01 | Aug 27, 2003 | Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites. | |||
| CVE-2003-0637 | 0.00 | — | 0.01 | Aug 27, 2003 | Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing. | |||
| CVE-2003-0638 | 0.00 | — | 0.03 | Aug 27, 2003 | Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attackers to cause a denial of service (ABEND) and possibly execute arbitrary code via (1) a long user name or (2) an unknown attack related to a "special script… | |||
| CVE-2003-0639 | 0.00 | — | 0.01 | Aug 27, 2003 | Unknown vulnerability in Novell iChain 2.2 before Support Pack 1 allows users to access restricted or secure pages without authentication. | |||
| CVE-2003-0640 | 0.00 | — | 0.02 | Aug 27, 2003 | BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges. | |||
| CVE-2003-0641 | 0.00 | — | 0.00 | Aug 27, 2003 | WatchGuard ServerLock for Windows 2000 before SL 2.0.3 allows local users to load arbitrary modules via the OpenProcess() function, as demonstrated using (1) a DLL injection attack, (2) ZwSetSystemInformation, and (3) API hooking in OpenProcess. | |||
| CVE-2003-0642 | 0.00 | — | 0.00 | Aug 27, 2003 | WatchGuard ServerLock for Windows 2000 before SL 2.0.4 allows local users to access kernel memory via a symlink attack on \Device\PhysicalMemory. | |||
| CVE-2003-0645 | 0.03 | — | 0.01 | Aug 27, 2003 | man-db 2.3.12 and 2.3.18 to 2.4.1 uses certain user-controlled DEFINE directives from the ~/.manpath file, even when running setuid, which could allow local users to gain privileges. | |||
| CVE-2003-0646 | 0.00 | — | 0.03 | Aug 27, 2003 | Multiple buffer overflows in ActiveX controls used by Trend Micro HouseCall 5.5 and 5.7, and Damage Cleanup Server 1.0, allow remote attackers to execute arbitrary code via long parameter strings. | |||
| CVE-2003-0647 | 0.03 | — | 0.06 | Aug 27, 2003 | Buffer overflow in the HTTP server for Cisco IOS 12.2 and earlier allows remote attackers to execute arbitrary code via an extremely long (2GB) HTTP GET request. | |||
| CVE-2003-0649 | 0.03 | — | 0.01 | Aug 27, 2003 | Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME environment variable. | |||
| CVE-2003-0650 | 0.00 | — | 0.04 | Aug 27, 2003 | Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade, possibly versions before 1.3e, allows remote attackers to overwrite arbitrary files and execute arbitrary code via .. (dot dot) sequences in filenames in a .APK (Zip) file. | |||
| CVE-2003-0651 | 0.04 | — | 0.09 | Aug 27, 2003 | Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. | |||
| CVE-2003-0652 | 0.00 | — | 0.00 | Aug 27, 2003 | Buffer overflow in xtokkaetama allows local users to gain privileges via a long -nickname command line argument, a different vulnerability than CVE-2003-0611. | |||
| CVE-2003-0653 | 0.00 | — | 0.01 | Aug 27, 2003 | The OSI networking kernel (sys/netiso) in NetBSD 1.6.1 and earlier does not use a BSD-required "PKTHDR" mbuf when sending certain error responses to the sender of an OSI packet, which allows remote attackers to cause a denial of service (kernel panic or crash) via certain OSI… | |||
| CVE-2003-0654 | 0.00 | — | 0.02 | Aug 27, 2003 | Buffer overflow in autorespond may allow remote attackers to execute arbitrary code as the autorespond user via qmail. | |||
| CVE-2003-0655 | 0.03 | — | 0.01 | Aug 27, 2003 | rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifying the target file as a command line argument, which is modified while rscsi is running with privileges. | |||
| CVE-2003-0656 | 0.00 | — | 0.00 | Aug 27, 2003 | eroaster before 2.2.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file that is used as a lockfile. | |||
| CVE-2003-0657 | 0.00 | — | 0.01 | Aug 27, 2003 | Multiple SQL injection vulnerabilities in the infolog module for phpgroupware 0.9.14 and earlier could allow remote attackers to conduct unauthorized database actions. | |||
| CVE-2003-0669 | 0.00 | — | 0.00 | Aug 27, 2003 | Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users. | |||
| CVE-2003-0670 | 0.00 | — | 0.00 | Aug 27, 2003 | Sustworks IPNetSentryX and IPNetMonitorX allow local users to sniff network packets via the setuid helper applications (1) RunTCPDump, which calls tcpdump, and (2) RunTCPFlow, which calls tcpflow. | |||
| CVE-2003-0671 | 0.00 | — | 0.01 | Aug 27, 2003 | Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow. | |||
| CVE-2003-0672 | 0.00 | — | 0.03 | Aug 27, 2003 | Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication, which is not properly handled when recording a log message. | |||
| CVE-2003-0676 | 0.00 | — | 0.02 | Aug 27, 2003 | Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via "..%2f" (partially encoded dot dot) sequences. | |||
| CVE-2003-0677 | 0.00 | — | 0.02 | Aug 27, 2003 | Cisco CSS 11000 routers on the CS800 chassis allow remote attackers to cause a denial of service (CPU consumption or reboot) via a large number of TCP SYN packets to the circuit IP address, aka "ONDM Ping failure." | |||
| CVE-2003-0679 | 0.00 | — | 0.00 | Aug 27, 2003 | Unknown vulnerability in the libcpr library for the Checkpoint/Restart (cpr) system on SGI IRIX 6.5.21f and earlier allows local users to truncate or overwrite certain files. | |||
| CVE-2003-0685 | 0.00 | — | 0.02 | Aug 27, 2003 | Buffer overflow in Netris 0.52 and earlier, and possibly other versions, allows remote malicious Netris servers to execute arbitrary code on netris clients via a long server response. | |||
| CVE-2003-0699 | 0.00 | — | 0.02 | Aug 27, 2003 | The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0700. | |||
| CVE-2003-0701 | 0.05 | — | 0.28 | Aug 27, 2003 | Buffer overflow in Internet Explorer 6 SP1 for certain languages that support double-byte encodings (e.g., Japanese) allows remote attackers to execute arbitrary code via the Type property of an Object tag, a variant of CVE-2003-0344. | |||
| CVE-2003-1063 | 0.00 | — | 0.02 | Aug 20, 2003 | The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may silently reenable services and allow remote attackers to bypass the intended security policy. | |||
| CVE-2003-1202 | 0.00 | — | 0.04 | Aug 19, 2003 | The checklogin function in omail.pl for omail webmail 0.98.4 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a (1) password, (2) domainname, or (3) username. | |||
| CVE-2001-1410 | 0.07 | — | 0.51 | Aug 18, 2003 | Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createPopup method, which could allow attackers to simulate a victim's display and conduct unauthorized activities or steal sensitive data via social engineering. | |||
| CVE-2003-0142 | 0.00 | — | 0.02 | Aug 18, 2003 | Adobe Acrobat Reader (acroread) 6, under certain circumstances when running with the "Certified plug-ins only" option disabled, loads plug-ins with signatures used for older versions of Acrobat, which can allow attackers to cause Acrobat to enter Certified mode and run untrusted… | |||
| CVE-2003-0176 | 0.00 | — | 0.01 | Aug 18, 2003 | The Name Service Daemon (nsd), when running on an NIS master on SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via a UDP port scan. | |||
| CVE-2003-0177 | 0.00 | — | 0.00 | Aug 18, 2003 | SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, does not follow "-" entries in the /etc/group file, which may cause subsequent group membership entries to be processed inadvertently. | |||
| CVE-2003-0192 | 0.00 | — | 0.06 | Aug 18, 2003 | Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the… | |||
| CVE-2003-0252 | Cri | 0.65 | 9.8 | 0.16 | Aug 18, 2003 | Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines. | ||
| CVE-2003-0253 | 0.01 | — | 0.09 | Aug 18, 2003 | The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service. | |||
| CVE-2003-0254 | 0.01 | — | 0.09 | Aug 18, 2003 | Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket. | |||
| CVE-2003-0345 | 0.03 | — | 0.34 | Aug 18, 2003 | Buffer overflow in the SMB capability for Microsoft Windows XP, 2000, and NT allows remote attackers to cause a denial of service and possibly execute arbitrary code via an SMB packet that specifies a smaller buffer length than is required. | |||
| CVE-2003-0350 | 0.00 | — | 0.02 | Aug 18, 2003 | The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a "Shatter" style message to the Utility Manager that references a… | |||
| CVE-2003-0352 | 0.11 | — | 0.99 | Aug 18, 2003 | Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms. | |||
| CVE-2003-0440 | 0.00 | — | 0.00 | Aug 18, 2003 | The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files. | |||
| CVE-2003-0456 | 0.00 | — | 0.03 | Aug 18, 2003 | VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe. | |||
| CVE-2003-0458 | 0.00 | — | 0.00 | Aug 18, 2003 | Unknown vulnerability in HP NonStop Server D40.00 through D48.03, and G01.00 through G06.20, allows local users to gain additional privileges. | |||
| CVE-2003-0465 | 0.00 | — | 0.02 | Aug 18, 2003 | The kernel strncpy function in Linux 2.4 and 2.5 does not %NUL pad the buffer on architectures other than x86, as opposed to the expected behavior of strncpy as implemented in libc, which could lead to information leaks. | |||
| CVE-2003-0496 | 0.03 | — | 0.05 | Aug 18, 2003 | Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the xp_fileexist extended stored procedure with a named pipe as an argument instead of a normal file. | |||
| CVE-2003-0515 | 0.00 | — | 0.01 | Aug 18, 2003 | SQL injection vulnerabilities in the (1) PostgreSQL or (2) MySQL authentication modules for teapop 0.3.5 and earlier allow attackers to execute arbitrary SQL and possibly gain privileges. | |||
| CVE-2003-0516 | 0.00 | — | 0.02 | Aug 18, 2003 | cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name strings. |
- CVE-2003-0635Aug 27, 2003risk 0.00cvss —epss 0.01
Unknown vulnerability or vulnerabilities in Novell iChain 2.2 before Support Pack 1, with unknown impact, possibly related to unauthorized access to (1) NCPIP.NLM and (2) JSTCP.NLM.
- CVE-2003-0636Aug 27, 2003risk 0.00cvss —epss 0.01
Novell iChain 2.2 before Support Pack 1 does not properly verify that URL redirects match the DNS name of an accelerator, which allows attackers to redirect URLs to malicious web sites.
- CVE-2003-0637Aug 27, 2003risk 0.00cvss —epss 0.01
Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing.
- CVE-2003-0638Aug 27, 2003risk 0.00cvss —epss 0.03
Multiple buffer overflows in Novell iChain 2.1 before Field Patch 3, and iChain 2.2 before Field Patch 1a, allow attackers to cause a denial of service (ABEND) and possibly execute arbitrary code via (1) a long user name or (2) an unknown attack related to a "special script…
- CVE-2003-0639Aug 27, 2003risk 0.00cvss —epss 0.01
Unknown vulnerability in Novell iChain 2.2 before Support Pack 1 allows users to access restricted or secure pages without authentication.
- CVE-2003-0640Aug 27, 2003risk 0.00cvss —epss 0.02
BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges.
- CVE-2003-0641Aug 27, 2003risk 0.00cvss —epss 0.00
WatchGuard ServerLock for Windows 2000 before SL 2.0.3 allows local users to load arbitrary modules via the OpenProcess() function, as demonstrated using (1) a DLL injection attack, (2) ZwSetSystemInformation, and (3) API hooking in OpenProcess.
- CVE-2003-0642Aug 27, 2003risk 0.00cvss —epss 0.00
WatchGuard ServerLock for Windows 2000 before SL 2.0.4 allows local users to access kernel memory via a symlink attack on \Device\PhysicalMemory.
- CVE-2003-0645Aug 27, 2003risk 0.03cvss —epss 0.01
man-db 2.3.12 and 2.3.18 to 2.4.1 uses certain user-controlled DEFINE directives from the ~/.manpath file, even when running setuid, which could allow local users to gain privileges.
- CVE-2003-0646Aug 27, 2003risk 0.00cvss —epss 0.03
Multiple buffer overflows in ActiveX controls used by Trend Micro HouseCall 5.5 and 5.7, and Damage Cleanup Server 1.0, allow remote attackers to execute arbitrary code via long parameter strings.
- CVE-2003-0647Aug 27, 2003risk 0.03cvss —epss 0.06
Buffer overflow in the HTTP server for Cisco IOS 12.2 and earlier allows remote attackers to execute arbitrary code via an extremely long (2GB) HTTP GET request.
- CVE-2003-0649Aug 27, 2003risk 0.03cvss —epss 0.01
Buffer overflow in xpcd-svga for xpcd 2.08 and earlier allows local users to execute arbitrary code via a long HOME environment variable.
- CVE-2003-0650Aug 27, 2003risk 0.00cvss —epss 0.04
Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade, possibly versions before 1.3e, allows remote attackers to overwrite arbitrary files and execute arbitrary code via .. (dot dot) sequences in filenames in a .APK (Zip) file.
- CVE-2003-0651Aug 27, 2003risk 0.04cvss —epss 0.09
Buffer overflow in the mylo_log logging function for mod_mylo 0.2.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
- CVE-2003-0652Aug 27, 2003risk 0.00cvss —epss 0.00
Buffer overflow in xtokkaetama allows local users to gain privileges via a long -nickname command line argument, a different vulnerability than CVE-2003-0611.
- CVE-2003-0653Aug 27, 2003risk 0.00cvss —epss 0.01
The OSI networking kernel (sys/netiso) in NetBSD 1.6.1 and earlier does not use a BSD-required "PKTHDR" mbuf when sending certain error responses to the sender of an OSI packet, which allows remote attackers to cause a denial of service (kernel panic or crash) via certain OSI…
- CVE-2003-0654Aug 27, 2003risk 0.00cvss —epss 0.02
Buffer overflow in autorespond may allow remote attackers to execute arbitrary code as the autorespond user via qmail.
- CVE-2003-0655Aug 27, 2003risk 0.03cvss —epss 0.01
rscsi in cdrtools 2.01 and earlier allows local users to overwrite arbitrary files and gain root privileges by specifying the target file as a command line argument, which is modified while rscsi is running with privileges.
- CVE-2003-0656Aug 27, 2003risk 0.00cvss —epss 0.00
eroaster before 2.2.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file that is used as a lockfile.
- CVE-2003-0657Aug 27, 2003risk 0.00cvss —epss 0.01
Multiple SQL injection vulnerabilities in the infolog module for phpgroupware 0.9.14 and earlier could allow remote attackers to conduct unauthorized database actions.
- CVE-2003-0669Aug 27, 2003risk 0.00cvss —epss 0.00
Unknown vulnerability in Solaris 2.6 through 9 causes a denial of service (system panic) via "a rare race condition" or an attack by local users.
- CVE-2003-0670Aug 27, 2003risk 0.00cvss —epss 0.00
Sustworks IPNetSentryX and IPNetMonitorX allow local users to sniff network packets via the setuid helper applications (1) RunTCPDump, which calls tcpdump, and (2) RunTCPFlow, which calls tcpflow.
- CVE-2003-0671Aug 27, 2003risk 0.00cvss —epss 0.01
Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.
- CVE-2003-0672Aug 27, 2003risk 0.00cvss —epss 0.03
Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication, which is not properly handled when recording a log message.
- CVE-2003-0676Aug 27, 2003risk 0.00cvss —epss 0.02
Directory traversal vulnerability in ViewLog for iPlanet Administration Server 5.1 (aka Sun ONE) allows remote attackers to read arbitrary files via "..%2f" (partially encoded dot dot) sequences.
- CVE-2003-0677Aug 27, 2003risk 0.00cvss —epss 0.02
Cisco CSS 11000 routers on the CS800 chassis allow remote attackers to cause a denial of service (CPU consumption or reboot) via a large number of TCP SYN packets to the circuit IP address, aka "ONDM Ping failure."
- CVE-2003-0679Aug 27, 2003risk 0.00cvss —epss 0.00
Unknown vulnerability in the libcpr library for the Checkpoint/Restart (cpr) system on SGI IRIX 6.5.21f and earlier allows local users to truncate or overwrite certain files.
- CVE-2003-0685Aug 27, 2003risk 0.00cvss —epss 0.02
Buffer overflow in Netris 0.52 and earlier, and possibly other versions, allows remote malicious Netris servers to execute arbitrary code on netris clients via a long server response.
- CVE-2003-0699Aug 27, 2003risk 0.00cvss —epss 0.02
The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0700.
- CVE-2003-0701Aug 27, 2003risk 0.05cvss —epss 0.28
Buffer overflow in Internet Explorer 6 SP1 for certain languages that support double-byte encodings (e.g., Japanese) allows remote attackers to execute arbitrary code via the Type property of an Object tag, a variant of CVE-2003-0344.
- CVE-2003-1063Aug 20, 2003risk 0.00cvss —epss 0.02
The patches (1) 105693-13, (2) 108800-02, (3) 105694-13, and (4) 108801-02 for cachefs on Solaris 2.6 and 7 overwrite the inetd.conf file, which may silently reenable services and allow remote attackers to bypass the intended security policy.
- CVE-2003-1202Aug 19, 2003risk 0.00cvss —epss 0.04
The checklogin function in omail.pl for omail webmail 0.98.4 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a (1) password, (2) domainname, or (3) username.
- CVE-2001-1410Aug 18, 2003risk 0.07cvss —epss 0.51
Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createPopup method, which could allow attackers to simulate a victim's display and conduct unauthorized activities or steal sensitive data via social engineering.
- CVE-2003-0142Aug 18, 2003risk 0.00cvss —epss 0.02
Adobe Acrobat Reader (acroread) 6, under certain circumstances when running with the "Certified plug-ins only" option disabled, loads plug-ins with signatures used for older versions of Acrobat, which can allow attackers to cause Acrobat to enter Certified mode and run untrusted…
- CVE-2003-0176Aug 18, 2003risk 0.00cvss —epss 0.01
The Name Service Daemon (nsd), when running on an NIS master on SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via a UDP port scan.
- CVE-2003-0177Aug 18, 2003risk 0.00cvss —epss 0.00
SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, does not follow "-" entries in the /etc/group file, which may cause subsequent group membership entries to be processed inadvertently.
- CVE-2003-0192Aug 18, 2003risk 0.00cvss —epss 0.06
Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the…
- risk 0.65cvss 9.8epss 0.16
Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.
- CVE-2003-0253Aug 18, 2003risk 0.01cvss —epss 0.09
The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service.
- CVE-2003-0254Aug 18, 2003risk 0.01cvss —epss 0.09
Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket.
- CVE-2003-0345Aug 18, 2003risk 0.03cvss —epss 0.34
Buffer overflow in the SMB capability for Microsoft Windows XP, 2000, and NT allows remote attackers to cause a denial of service and possibly execute arbitrary code via an SMB packet that specifies a smaller buffer length than is required.
- CVE-2003-0350Aug 18, 2003risk 0.00cvss —epss 0.02
The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a "Shatter" style message to the Utility Manager that references a…
- CVE-2003-0352Aug 18, 2003risk 0.11cvss —epss 0.99
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.
- CVE-2003-0440Aug 18, 2003risk 0.00cvss —epss 0.00
The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
- CVE-2003-0456Aug 18, 2003risk 0.00cvss —epss 0.03
VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.
- CVE-2003-0458Aug 18, 2003risk 0.00cvss —epss 0.00
Unknown vulnerability in HP NonStop Server D40.00 through D48.03, and G01.00 through G06.20, allows local users to gain additional privileges.
- CVE-2003-0465Aug 18, 2003risk 0.00cvss —epss 0.02
The kernel strncpy function in Linux 2.4 and 2.5 does not %NUL pad the buffer on architectures other than x86, as opposed to the expected behavior of strncpy as implemented in libc, which could lead to information leaks.
- CVE-2003-0496Aug 18, 2003risk 0.03cvss —epss 0.05
Microsoft SQL Server before Windows 2000 SP4 allows local users to gain privileges as the SQL Server user by calling the xp_fileexist extended stored procedure with a named pipe as an argument instead of a normal file.
- CVE-2003-0515Aug 18, 2003risk 0.00cvss —epss 0.01
SQL injection vulnerabilities in the (1) PostgreSQL or (2) MySQL authentication modules for teapop 0.3.5 and earlier allow attackers to execute arbitrary SQL and possibly gain privileges.
- CVE-2003-0516Aug 18, 2003risk 0.00cvss —epss 0.02
cnd.c in mgetty 1.1.28 and earlier does not properly filter non-printable characters and quotes, which may allow remote attackers to execute arbitrary commands via shell metacharacters in (1) caller ID or (2) caller name strings.