CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2003-0528

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed RPC request with a long filename parameter, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0715.

    Published: 12 Sept 2003
    5
    Medium

    CVE-2002-1352

    Last Modified: 16 Apr 2026

    Per Magne Knutsen's CartMan shopping cart (cartman.php) 1.04 and earlier allows remote attackers to modify product prices by changing the price parameter.

    Published: 12 Sept 2003
    7.2
    High

    CVE-2003-0703

    Last Modified: 16 Apr 2026

    KisMAC before 0.05d trusts user-supplied variables to load arbitrary kernels or kernel modules, which allows local users to gain privileges via the $DRIVER_KEXT environment variable as used in (1) viha_driver.sh, (2) macjack_load.sh, or (3) airojack_load.sh, or (4) via "similar techniques" using exchangeKernel.sh.

    Published: 12 Sept 2003
    7.2
    High

    CVE-2003-0704

    Last Modified: 16 Apr 2026

    KisMAC before 0.05d trusts user-supplied variables when chown'ing files or directories, which allows local users to gain privileges via the $DRIVER_KEXT environment variable in (1) viha_driver.sh, (2) macjack_load.sh, (3) airojack_load.sh, (4) setuid_enable.sh, (5) setuid_disable.sh, and using a "similar technique" for (6) viha_prep.sh and (7) viha_unprep.sh.

    Published: 12 Sept 2003
    7.5
    High

    CVE-2003-0705

    Last Modified: 16 Apr 2026

    Buffer overflow in mah-jong 1.5.6 and earlier allows remote attackers to execute arbitrary code.

    Published: 12 Sept 2003
    5
    Medium

    CVE-2003-0706

    Last Modified: 16 Apr 2026

    Unknown vulnerability in mah-jong 1.5.6 and earlier allows remote attackers to cause a denial of service (tight loop).

    Published: 12 Sept 2003
    5
    Medium

    CVE-2003-0760

    Last Modified: 16 Apr 2026

    Blubster 2.5 allows remote attackers to cause a denial of service (crash) via a flood of connections to UDP port 701.

    Published: 12 Sept 2003
    7.5
    High

    CVE-2003-0762

    Last Modified: 16 Apr 2026

    Buffer overflow in (1) foxweb.dll and (2) foxweb.exe of Foxweb 2.5 allows remote attackers to execute arbitrary code via a long URL (PATH_INFO value).

    Published: 12 Sept 2003
    5
    Medium

    CVE-2003-0764

    Last Modified: 16 Apr 2026

    Escapade Scripting Engine (ESP) allows remote attackers to obtain sensitive path information via a malformed request, which leaks the information in an error message, as demonstrated using the PAGE parameter.

    Published: 12 Sept 2003
    7.5
    High

    CVE-2003-0766

    Last Modified: 16 Apr 2026

    Multiple heap-based buffer overflows in FTP Desktop client 3.5, and possibly earlier versions, allow remote malicious servers to execute arbitrary code via (1) a long FTP banner, (2) a long response to a USER command, or (3) a long response to a PASS command.

    Published: 12 Sept 2003
    6.8
    Medium

    CVE-2003-0768

    Last Modified: 16 Apr 2026

    Microsoft ASP.Net 1.1 allows remote attackers to bypass the Cross-Site Scripting (XSS) and Script Injection protection feature via a null character in the beginning of a tag name.

    Published: 12 Sept 2003
    7.5
    High

    CVE-2003-0720

    Last Modified: 16 Apr 2026

    Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-body MIME type.

    Published: 10 Sept 2003
    7.5
    High

    CVE-2003-0721

    Last Modified: 16 Apr 2026

    Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an email that causes an out-of-bounds array access using a negative number.

    Published: 10 Sept 2003
    9
    Critical

    CVE-2003-0780

    Last Modified: 16 Apr 2026

    Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privileges to execute arbitrary code via a long Password field.

    Published: 10 Sept 2003
    10
    Critical

    CVE-2003-1081

    Last Modified: 16 Apr 2026

    Aspppls for Solaris 8 allows local users to overwrite arbitrary files via a symlink attack on the .asppp.fifo temporary file.

    Published: 9 Sept 2003
    5
    Medium

    CVE-2003-0541

    Last Modified: 16 Apr 2026

    gtkhtml before 1.1.10, as used in Evolution, allows remote attackers to cause a denial of service (crash) via a malformed message that causes a null pointer dereference.

    Published: 9 Sept 2003
    5
    Medium

    CVE-2004-0154

    Last Modified: 16 Apr 2026

    rpc.mountd in nfs-utils after 1.0.3 and before 1.0.6 allows attackers to cause a denial of service (crash) via an NFS mount of a directory from a client whose reverse DNS lookup name is different from the forward lookup name.

    Published: 9 Sept 2003
    4.6
    Medium

    CVE-2003-0644

    Last Modified: 16 Apr 2026

    Kdbg 1.1.0 through 1.2.8 does not check permissions of the .kdbgrc file, which allows local users to execute arbitrary commands.

    Published: 7 Sept 2003
    5
    Medium

    CVE-2003-0757

    Last Modified: 16 Apr 2026

    Check Point FireWall-1 4.0 and 4.1 before SP5 allows remote attackers to obtain the IP addresses of internal interfaces via certain SecuRemote requests to TCP ports 256 or 264, which leaks the IP addresses in a reply packet.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0756

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in sitebuilder.cgi in SiteBuilder 1.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the selectedpage parameter.

    Published: 6 Sept 2003
    10
    Critical

    CVE-2003-0755

    Last Modified: 16 Apr 2026

    Buffer overflow in sys_cmd.c for gtkftpd 1.0.4 and earlier allows remote attackers to execute arbitrary code by creating long directory names and listing them with a LIST command.

    Published: 6 Sept 2003
    7.5
    High

    CVE-2003-0754

    Last Modified: 16 Apr 2026

    nphpd.php in newsPHP 216 and earlier allows remote attackers to bypass authentication via an HTTP request with a modified nphp_users array, which is used for authentication.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0753

    Last Modified: 16 Apr 2026

    nphpd.php in newsPHP 216 and earlier allows remote attackers to read arbitrary files via a full pathname to the target file in the nphp_config[LangFile] parameter.

    Published: 6 Sept 2003
    7.5
    High

    CVE-2003-0752

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in global.php3 of AttilaPHP 3.0, and possibly earlier versions, allows remote attackers to bypass authentication via a modified cook_id parameter.

    Published: 6 Sept 2003
    7.5
    High

    CVE-2003-0750

    Last Modified: 16 Apr 2026

    secure.php in PY-Membres 4.2 and earlier allows remote attackers to bypass authentication by setting the adminpy parameter.

    Published: 6 Sept 2003
    6.8
    Medium

    CVE-2003-0749

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to insert arbitrary web script and steal cookies via the ~service parameter.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0747

    Last Modified: 16 Apr 2026

    wgate.dll in SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to obtain potentially sensitive information such as directory structure and operating system via incorrect parameters (1) ~service, (2) ~templatelanguage, (3) ~language, (4) ~theme, or (5) ~template, which leaks the information in the resulting error message.

    Published: 6 Sept 2003
    10
    Critical

    CVE-2003-0745

    Last Modified: 16 Apr 2026

    SNMPc 6.0.8 and earlier performs authentication to the server on the client side, which allows remote attackers to gain privileges by decrypting the password that is returned by the server.

    Published: 6 Sept 2003
    7.5
    High

    CVE-2003-0743

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in smtp_in.c for Exim 3 (exim3) before 3.36 and Exim 4 (exim4) before 4.21 may allow remote attackers to execute arbitrary code via an invalid (1) HELO or (2) EHLO argument with a large number of spaces followed by a NULL character and a newline, which is not properly trimmed before the "(no argument given)" string is appended to the buffer.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0744

    Last Modified: 16 Apr 2026

    The fetchnews NNTP client in leafnode 1.9.3 to 1.9.41 allows remote attackers to cause a denial of service (process hang and termination) via certain malformed Usenet news articles that cause fetchnews to hang while waiting for input.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0746

    Last Modified: 16 Apr 2026

    Various Distributed Computing Environment (DCE) implementations, including HP OpenView, allow remote attackers to cause a denial of service (process hang or termination) via certain malformed inputs, as triggered by attempted exploits against the vulnerabilities CVE-2003-0352 or CVE-2003-0605, such as the Blaster/MSblast/LovSAN worm.

    Published: 6 Sept 2003
    5
    Medium

    CVE-2003-0748

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in wgate.dll for SAP Internet Transaction Server (ITS) 4620.2.0.323011 allows remote attackers to read arbitrary files via ..\ (dot-dot backslash) sequences in the ~theme parameter and a ~template parameter with a filename followed by space characters, which can prevent SAP from effectively adding a .html extension to the filename.

    Published: 6 Sept 2003
    7.5
    High

    CVE-2003-0751

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in pass_done.php for PY-Membres 4.2 and earlier allows remote attackers to execute arbitrary SQL queries via the email parameter.

    Published: 6 Sept 2003
    6.4
    Medium

    CVE-2003-0935

    Last Modified: 16 Apr 2026

    Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.

    Published: 6 Sept 2003
    4.6
    Medium

    CVE-2003-0739

    Last Modified: 16 Apr 2026

    VMware Workstation 4.0.1 for Linux, build 5289 and earlier, allows local users to delete arbitrary files via a symlink attack.

    Published: 4 Sept 2003
    5
    Medium

    CVE-2003-0737

    Last Modified: 16 Apr 2026

    The calendar module in phpWebSite 0.9.x and earlier allows remote attackers to obtain the full pathname of phpWebSite via an invalid year, which generates an error from localtime() in TimeZone.php of the Pear library.

    Published: 4 Sept 2003
    6.8
    Medium

    CVE-2003-0733

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in WebLogic Integration 7.0 and 2.0, Liquid Data 1.1, and WebLogic Server and Express 5.1 through 7.0, allow remote attackers to execute arbitrary web script and steal authentication credentials via (1) a forward instruction to the Servlet container or (2) other vulnerabilities in the WebLogic Server console application.

    Published: 4 Sept 2003
    7.8
    High

    CVE-2003-0738

    Last Modified: 16 Apr 2026

    The calendar module in phpWebSite 0.9.x and earlier allows remote attackers to cause a denial of service (crash) via a long year parameter.

    Published: 4 Sept 2003
    6.8
    Medium

    CVE-2003-0736

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in phpWebSite 0.9.x and earlier allow remote attackers to execute arbitrary web script via (1) the day parameter in the calendar module, (2) the fatcat_id parameter in the fatcat module, (3) the PAGE_id parameter in the pagemaster module, (4) the PDA_limit parameter in the search, and (5) possibly other parameters in the calendar, fatcat, and pagemaster modules.

    Published: 4 Sept 2003
    7.5
    High

    CVE-2003-0735

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in the Calendar module of phpWebSite 0.9.x and earlier allows remote attackers to execute arbitrary SQL queries, as demonstrated using the year parameter.

    Published: 4 Sept 2003
    10
    Critical

    CVE-2003-0347

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.

    Published: 4 Sept 2003
    7.2
    High

    CVE-2003-0630

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in the atari800.svgalib setuid program of the Atari 800 emulator (atari800) before 1.2.2 allow local users to gain privileges via long command line arguments, as demonstrated with the -osa_rom argument.

    Published: 4 Sept 2003
    5
    Medium

    CVE-2003-0661

    Last Modified: 16 Apr 2026

    The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS query, which could allow remote attackers to obtain sensitive information.

    Published: 4 Sept 2003
    7.5
    High

    CVE-2003-0664

    Last Modified: 16 Apr 2026

    Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.

    Published: 4 Sept 2003
    7.5
    High

    CVE-2003-0665

    Last Modified: 16 Apr 2026

    Buffer overflow in the ActiveX control for Microsoft Access Snapshot Viewer for Access 97, 2000, and 2002 allows remote attackers to execute arbitrary code via long parameters to the control.

    Published: 4 Sept 2003
    7.5
    High

    CVE-2003-0666

    Last Modified: 16 Apr 2026

    Buffer overflow in Microsoft Wordperfect Converter allows remote attackers to execute arbitrary code via modified data offset and data size parameters in a Corel WordPerfect file.

    Published: 4 Sept 2003
    10
    Critical

    CVE-2003-0731

    Last Modified: 16 Apr 2026

    CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly involving the "cmd" parameter with a modifyUser value and a modified "priviledges" parameter.

    Published: 4 Sept 2003
    10
    Critical

    CVE-2003-0732

    Last Modified: 16 Apr 2026

    CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to obtain restricted information and possibly gain administrative privileges by changing the "guest" user to the Admin user on the Modify or delete users pages.

    Published: 4 Sept 2003
    10
    Critical

    CVE-2003-0734

    Last Modified: 16 Apr 2026

    Unknown vulnerability in the pam_filter mechanism in pam_ldap before version 162, when LDAP based authentication is being used, allows users to bypass host-based access restrictions and log onto the system.

    Published: 4 Sept 2003
    5.1
    Medium

    CVE-2003-0726

    Last Modified: 16 Apr 2026

    RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previously loaded URL, as demonstrated using a "javascript:" URL in the area tag.

    Published: 3 Sept 2003