Latest CVE Feed
-
7.5
HIGHCVE-2003-0054
Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute certain code via a request to port 7070 with the script in an argument to the rtsp DESCRIBE method, which is inserted into a log fil... Read more
- EPSS Score: %0.87
- Published: Mar. 07, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0050
parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via shell metacharacters.... Read more
- EPSS Score: %87.79
- Published: Mar. 07, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0033
Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets.... Read more
Affected Products : snort- EPSS Score: %51.59
- Published: Mar. 07, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0103
Format string vulnerability in Nokia 6210 handset allows remote attackers to cause a denial of service (crash, lockup, or restart) via a Multi-Part vCard with fields containing a large number of format string specifiers.... Read more
Affected Products : 6210_handset- EPSS Score: %0.66
- Published: Mar. 07, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0108
isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop.... Read more
Affected Products : tcpdump- EPSS Score: %17.04
- Published: Mar. 07, 2003
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2003-1077
Unknown vulnerability in UFS for Solaris 9 for SPARC, with logging enabled, allows local users to cause a denial of service (UFS file system hang).... Read more
Affected Products : solaris- EPSS Score: %0.07
- Published: Mar. 05, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2003-0088
TruBlueEnvironment for MacOS 10.2.3 and earlier allows local users to overwrite or create arbitrary files and gain root privileges by setting a certain environment variable that is used to write debugging information.... Read more
Affected Products : mac_os_x- EPSS Score: %0.05
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0095
Buffer overflow in ORACLE.EXE for Oracle Database Server 9i, 8i, 8.1.7, and 8.0.6 allows remote attackers to execute arbitrary code via a long username that is provided during login, as exploitable through client applications that perform their own authen... Read more
- EPSS Score: %33.07
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0049
Apple File Protocol (AFP) in Mac OS X before 10.2.4 allows administrators to log in as other users by using the administrator password.... Read more
- EPSS Score: %0.54
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0078
ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptogr... Read more
- EPSS Score: %18.67
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0098
Unknown vulnerability in apcupsd before 3.8.6, and 3.10.x before 3.10.5, allows remote attackers to gain root privileges, possibly via format strings in a request to a slave server.... Read more
- EPSS Score: %6.82
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2002-0842
Format string vulnerability in certain third party modifications to mod_dav for logging bad gateway messages (e.g. Oracle9i Application Server 9.0.2) allows remote attackers to execute arbitrary code via a destination URI that forces a "502 Bad Gateway" r... Read more
Affected Products : application_server- EPSS Score: %38.36
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0101
miniserv.pl in (1) Webmin before 1.070 and (2) Usermin before 1.000 does not properly handle metacharacters such as line feeds and carriage returns (CRLF) in Base-64 encoded strings during Basic authentication, which allows remote attackers to spoof a ses... Read more
- EPSS Score: %15.50
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.2
HIGHCVE-2003-0087
Buffer overflow in libIM library (libIM.a) for National Language Support (NLS) on AIX 4.3 through 5.2 allows local users to gain privileges via several possible attack vectors, including a long -im argument to aixterm.... Read more
- EPSS Score: %0.40
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-1510
xdm, with the authComplain variable set to false, allows arbitrary attackers to connect to the X server if the xdm auth directory does not exist.... Read more
- EPSS Score: %0.81
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0097
Unknown vulnerability in CGI module for PHP 4.3.0 allows attackers to access arbitrary files as the PHP user, and possibly execute PHP code, by bypassing the CGI force redirect settings (cgi.force_redirect or --enable-force-cgi-redirect).... Read more
Affected Products : php- EPSS Score: %0.63
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0100
Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.... Read more
Affected Products : ios- EPSS Score: %4.07
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2003-0094
A patch for mcookie in the util-linux package for Mandrake Linux 8.2 and 9.0 uses /dev/urandom instead of /dev/random, which causes mcookie to use an entropy source that is more predictable than expected, which may make it easier for certain types of atta... Read more
Affected Products : util-linux- EPSS Score: %0.43
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2003-0070
VTE, as used by default in gnome-terminal terminal emulator 2.2 and as an option in gnome-terminal 2.0, allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal,... Read more
- EPSS Score: %0.64
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2003-0065
The uxterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's terminal, e.g. when the user views a file containing the malicious sequence, which c... Read more
Affected Products : uxterm- EPSS Score: %0.67
- Published: Mar. 03, 2003
- Modified: Apr. 03, 2025