Latest CVE Feed
-
10.0
HIGHCVE-2003-0410
Buffer overflow in AnalogX Proxy 4.13 allows remote attackers to execute arbitrary code via a long URL to port 6588.... Read more
Affected Products : proxy- EPSS Score: %8.39
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2003-0416
Cross-site scripting (XSS) vulnerability in index.cgi for Bandmin 1.4 allows remote attackers to insert arbitrary HTML or script via (1) the year parameter in a showmonth action, (2) the month parameter in a showmonth action, or (3) the host parameter in ... Read more
Affected Products : bandmin- EPSS Score: %0.52
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0417
Directory traversal vulnerability in Son hServer 0.2 allows remote attackers to read arbitrary files via ".|." (modified dot-dot) sequences.... Read more
Affected Products : son_hserver- EPSS Score: %1.38
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0407
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.... Read more
Affected Products : batalla_naval- EPSS Score: %3.93
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2003-0408
Buffer overflow in Uptime Client (UpClient) 5.0b7, and possibly other versions, allows local users to gain privileges via a long -p argument.... Read more
Affected Products : upclient- EPSS Score: %0.32
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2003-0404
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to insert arbitrary HTML and script via text variables, as demonstrated using the errInfo parameter of the default login ... Read more
- EPSS Score: %0.42
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0411
Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that uses the uppercase ".JSP" extension instead of the lowercase .jsp extension.... Read more
- EPSS Score: %10.05
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0412
Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.... Read more
Affected Products : one_application_server- EPSS Score: %1.09
- Published: Jun. 30, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2003-1067
Multiple buffer overflows in the (1) dbm_open function, as used in ndbm and dbm, and the (2) dbminit function in Solaris 2.6 through 9 allow local users to gain root privileges via long arguments to Xsun or other programs that use these functions.... Read more
- EPSS Score: %0.09
- Published: Jun. 19, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-1086
PHP remote file inclusion vulnerability in pm/lib.inc.php in pMachine Free and pMachine Pro 2.2 and 2.2.1 allows remote attackers to execute arbitrary PHP code by modifying the pm_path parameter to reference a URL on a remote web server that contains the ... Read more
- EPSS Score: %1.60
- Published: Jun. 17, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-1565
Buffer overflow in url_filename function for wget 1.8.1 allows attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long URL.... Read more
Affected Products : immunix- EPSS Score: %0.94
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2003-0295
Cross-site scripting (XSS) vulnerability in private.php for vBulletin 3.0.0 Beta 2 allows remote attackers to inject arbitrary web script and HTML via the "Preview Message" capability.... Read more
Affected Products : vbulletin- EPSS Score: %0.42
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2002-1155
Buffer overflow in KON kon2 0.3.9b and earlier allows local users to execute arbitrary code via a long -Coding command line argument.... Read more
Affected Products : linux- EPSS Score: %0.13
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0276
Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters.... Read more
Affected Products : pi3web- EPSS Score: %16.12
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0296
The IMAP Client for Evolution 1.2.4 allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large literal size values that cause either integer signedness errors or integer overflow errors.... Read more
Affected Products : evolution- EPSS Score: %0.95
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0247
Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").... Read more
Affected Products : linux- EPSS Score: %1.66
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0299
The IMAP Client, as used in mutt 1.4.1 and Balsa 2.0.10, allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large mailbox size values that cause either integer signedness errors or integer ove... Read more
- EPSS Score: %0.89
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
3.6
LOWCVE-2003-0246
The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.... Read more
Affected Products : linux_kernel- EPSS Score: %0.12
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0354
Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job.... Read more
Affected Products : linux- EPSS Score: %0.82
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2003-0289
Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string specifiers in the dev parameter.... Read more
Affected Products : cdrecord- EPSS Score: %0.13
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025