7.5
    High

    CVE-2003-0215

    Last Modified: 7 Nov 2012

    SQL injection vulnerability in bttlxeForum 2.0 beta 3 and earlier allows remote attackers to bypass authentication via the (1) username and (2) password fields, and possibly other fields.

    Source:Du|L
    Published:26 Apr 2003
    7.5
    High

    CVE-2003-0213

    Last Modified: 27 Oct 2016

    ctrlpacket.c in PoPToP PPTP server before 1.1.4-b3 allows remote attackers to cause a denial of service via a length field of 0 or 1, which causes a negative value to be fed into a read operation, leading to a buffer overflow.

    Source:Metasploit
    Published:26 Apr 2003
    5
    Medium

    CVE-2003-0211

    Last Modified: 5 Nov 2012

    Memory leak in xinetd 2.3.10 allows remote attackers to cause a denial of service (memory consumption) via a large number of rejected connections.

    Source:Steve Grubb
    Published:16 Apr 2003
    10
    Critical

    CVE-2003-0209

    Last Modified: 4 Dec 2016

    Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.

    Source:truff
    Published:16 Apr 2003
    7.5
    High

    CVE-2003-0203

    Last Modified: 27 Oct 2012

    Buffer overflow in moxftp 2.2 and earlier allows remote malicious FTP servers to execute arbitrary code via a long FTP banner.

    Source:Knud Erik Hojgaard
    Published:8 Apr 2003
    10
    Critical

    CVE-2003-0201

    Last Modified: 6 Sept 2017

    Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.

    Source:Metasploit
    Published:7 Apr 2003
    5
    Medium

    CVE-2003-0195

    Last Modified: 11 Nov 2012

    CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out.

    Source:Phil D'Amore
    Published:27 May 2003
    5
    Medium

    CVE-2003-0190

    Last Modified: 27 Oct 2016

    OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which allows remote attackers to determine valid usernames via a timing attack.

    Source:Nicolas Couture
    Published:30 Apr 2003
    7.5
    High

    CVE-2003-0172

    Last Modified: 2 Dec 2016

    Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote attackers to cause a crash and possibly execute arbitrary code via a long filename argument.

    Source:The Warlock [BhQ]
    Published:29 Mar 2003
    7.2
    High

    CVE-2003-0171

    Last Modified: 4 Oct 2017

    DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitrary commands by modifying the PATH to point to a directory containing a malicious touch program.

    Source:Neeko Oni
    Published:15 Apr 2003
    5
    Medium

    CVE-2003-0169

    Last Modified: 3 Nov 2012

    hpnst.exe in the GoAhead-Webs webserver for HP Instant TopTools before 5.55 allows remote attackers to cause a denial of service (CPU consumption) via a request to hpnst.exe that calls itself, which causes an infinite loop.

    Source:Erik Parker
    Published:1 Apr 2003
    7.5
    High

    CVE-2003-0166

    Last Modified: 2 Dec 2016

    Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via negative arguments to functions such as (1) socket_recv, (2) socket_recvfrom, and possibly other functions.

    Source:Sir Mordred
    Published:27 Mar 2003
    4.6
    Medium

    CVE-2003-0165

    Last Modified: 31 Oct 2012

    Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.

    Source:Core Security
    Published:28 Mar 2003
    10
    Critical

    CVE-2003-0161

    Last Modified: 4 Dec 2016

    The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char and int types, which can cause a length check to be disabled when Sendmail misinterprets an input value as a special "NOCHAR" control value, allowing attackers to cause a denial of service and possibly execute arbitrary code via a buffer overflow attack using messages, a different vulnerability than CVE-2002-1337.

    Source:bysin
    Published:29 Mar 2003
    6.8
    Medium

    CVE-2003-0154

    Last Modified: 4 Oct 2012

    Cross-site scripting vulnerabilities (XSS) in bonsai Mozilla CVS query tool allow remote attackers to execute arbitrary web script via (1) the file, root, or rev parameters to cvslog.cgi, (2) the file or root parameters to cvsblame.cgi, (3) various parameters to cvsquery.cgi, (4) the person parameter to showcheckins.cgi, (5) the module parameter to cvsqueryform.cgi, and (6) possibly other attack vectors as identified by Mozilla bug #146244.

    Source:Stan Bubrouski
    Published:26 Mar 2003
    5
    Medium

    CVE-2003-0153

    Last Modified: 4 Oct 2012

    bonsai Mozilla CVS query tool leaks the absolute pathname of the tool in certain error messages generated by (1) cvslog.cgi, (2) cvsview2.cgi, or (3) multidiff.cgi.

    Source:Stan Bubrouski
    Published:26 Mar 2003
    9
    Critical

    CVE-2003-0150

    Last Modified: 30 Oct 2012

    MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.

    Published:8 Mar 2003
    7.2
    High

    CVE-2003-0144

    Last Modified: 30 Oct 2012

    Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name.

    Source:Niall Smart
    Published:14 Mar 2003
    10
    Critical

    CVE-2003-0143

    Last Modified: 30 Oct 2012

    The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allow authenticated users to execute arbitrary code via a buffer overflow in a mdef command with a long macro name.

    Source:Florian Heinz
    Published:18 Mar 2003
    5
    Medium

    CVE-2003-0132

    Last Modified: 10 Feb 2016

    A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.

    Source:Daniel Nystram
    Published:2 Apr 2003
    5
    Medium

    CVE-2003-0130

    Last Modified: 31 Oct 2012

    The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.

    Source:Core Security
    Published:19 Mar 2003
    5
    Medium

    CVE-2003-0129

    Last Modified: 31 Oct 2012

    Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.

    Source:Core Security
    Published:19 Mar 2003
    5
    Medium

    CVE-2003-0128

    Last Modified: 31 Oct 2012

    The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.

    Source:Core Security
    Published:19 Mar 2003
    7.2
    High

    CVE-2003-0127

    Last Modified: 4 Oct 2017

    The kernel module loader in Linux kernel 2.2.x before 2.2.25, and 2.4.x before 2.4.21, allows local users to gain root privileges by using ptrace to attach to a child process that is spawned by the kernel.

    Source:Wojciech Purczynski
    Published:17 Mar 2003
    5
    Medium

    CVE-2003-0125

    Last Modified: 30 Oct 2012

    Buffer overflow in the web interface for SOHO Routefinder 550 before firmware 4.63 allows remote attackers to cause a denial of service (reboot) and execute arbitrary code via a long GET /OPTIONS value.

    Source:Peter Kruse
    Published:18 Mar 2003
    4.6
    Medium

    CVE-2003-0124

    Last Modified: 30 Oct 2012

    man before 1.5l allows attackers to execute arbitrary code via a malformed man file with improper quotes, which causes the my_xsprintf function to return a string with the value "unsafe," which is then executed as a program via a system call if it is in the search path of the user who runs man.

    Source:Jack Lloyd
    Published:11 Mar 2003
    7.5
    High

    CVE-2003-0121

    Last Modified: 4 Nov 2012

    Clearswift MAILsweeper 4.x allows remote attackers to bypass attachment detection via an attachment that does not specify a MIME-Version header field, which is processed by some mail clients.

    Source:http-equiv
    Published:13 Mar 2003
    7.5
    High

    CVE-2003-0118

    Last Modified: 8 Nov 2012

    SQL injection vulnerability in the Document Tracking and Administration (DTA) website of Microsoft BizTalk Server 2000 and 2002 allows remote attackers to execute operating system commands via a request to (1) rawdocdata.asp or (2) RawCustomSearchField.asp containing an embedded SQL statement.

    Source:Cesar Cerrudo
    Published:2 May 2003
    7.5
    High

    CVE-2003-0117

    Last Modified: 8 Nov 2012

    Buffer overflow in the HTTP receiver function (BizTalkHTTPReceive.dll ISAPI) of Microsoft BizTalk Server 2002 allows attackers to execute arbitrary code via a certain request to the HTTP receiver.

    Source:Cesar Cerrudo
    Published:2 May 2003
    7.5
    High

    CVE-2003-0113

    Last Modified: 7 Nov 2012

    Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute arbitrary code via an HTTP response containing long values in (1) Content-type and (2) Content-encoding fields.

    Source:Jouko Pynnonen
    Published:26 Apr 2003
    7.5
    High

    CVE-2003-0111

    Last Modified: 22 Oct 2012

    The ByteCode Verifier component of Microsoft Virtual Machine (VM) build 5.0.3809 and earlier, as used in Windows and Internet Explorer, allows remote attackers to bypass security checks and execute arbitrary code via a malicious Java applet, aka "Flaw in Microsoft VM Could Enable System Compromise."

    Source:Last Stage of Delirium
    Published:15 Apr 2003
    7.5
    High

    CVE-2003-0109

    Last Modified: 22 Nov 2017

    Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute arbitrary code, as demonstrated via a WebDAV request to IIS 5.0.

    Source:kralor
    Published:18 Mar 2003
    5
    Medium

    CVE-2003-0108

    Last Modified: 28 Oct 2012

    isakmp_sub_print in tcpdump 3.6 through 3.7.1 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ISAKMP packet to UDP port 500, which causes tcpdump to enter an infinite loop.

    Source:The Salvia Twist
    Published:27 Feb 2003
    7.5
    High

    CVE-2003-0107

    Last Modified: 27 Oct 2012

    Buffer overflow in the gzprintf function in zlib 1.1.4, when zlib is compiled without vsnprintf or when long inputs are truncated using vsnprintf, allows attackers to cause a denial of service or possibly execute arbitrary code.

    Source:Richard Kettlewel
    Published:22 Feb 2003
    4.6
    Medium

    CVE-2003-0102

    Last Modified: 28 Oct 2012

    Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly via a large entity size value in an ELF header (elfhdr.e_shentsize).

    Source:lem0n
    Published:4 Mar 2003
    10
    Critical

    CVE-2003-0101

    Last Modified: 27 Oct 2012

    miniserv.pl in (1) Webmin before 1.070 and (2) Usermin before 1.000 does not properly handle metacharacters such as line feeds and carriage returns (CRLF) in Base-64 encoded strings during Basic authentication, which allows remote attackers to spoof a session ID and gain root privileges.

    Source:Carl Livitt
    Published:26 Feb 2003
    7.5
    High

    CVE-2003-0100

    Last Modified: 27 Oct 2012

    Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.

    Source:FX
    Published:3 Mar 2003
    Low

    CVE-2003-0090

    Last Modified: 12 Dec 2012

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0844. Reason: This candidate is a duplicate of CVE-2000-0844. Notes: All CVE users should reference CVE-2000-0844 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:watercloud
    Published:18 Nov 2003
    7.2
    High

    CVE-2003-0089

    Last Modified: 12 Dec 2012

    Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.

    Source:watercloud
    Published:18 Nov 2003
    7.2
    High

    CVE-2003-0087

    Last Modified: 25 Oct 2012

    Buffer overflow in libIM library (libIM.a) for National Language Support (NLS) on AIX 4.3 through 5.2 allows local users to gain privileges via several possible attack vectors, including a long -im argument to aixterm.

    Source:Euan Briggs
    Published:3 Mar 2003
    10
    Critical

    CVE-2003-0085

    Last Modified: 2 Dec 2016

    Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code.

    Source:Metasploit
    Published:15 Mar 2003
    5
    Medium

    CVE-2003-0078

    Last Modified: 28 Oct 2012

    ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack."

    Source:Martin Vuagnoux
    Published:19 Feb 2003
    7.2
    High

    CVE-2003-0056

    Last Modified: 24 Oct 2012

    Buffer overflow in secure locate (slocate) before 2.7 allows local users to execute arbitrary code via a long (1) -c or (2) -r command line argument.

    Source:USG team
    Published:1 Feb 2003
    7.5
    High

    CVE-2003-0050

    Last Modified: 6 Mar 2011

    parse_xml.cgi in Apple Darwin Streaming Administration Server 4.1.2 and QuickTime Streaming Server 4.1.1 allows remote attackers to execute arbitrary code via shell metacharacters.

    Source:Metasploit
    Published:7 Mar 2003
    5
    Medium

    CVE-2003-0042

    Last Modified: 24 Oct 2012

    Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, allows remote attackers to list directories even with an index.html or other file present, or obtain unprocessed source code for a JSP file, via a URL containing a null character.

    Source:Jouko Pynnönen
    Published:29 Jan 2003
    4.3
    Medium

    CVE-2003-0038

    Last Modified: 24 Oct 2012

    Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters.

    Published:29 Jan 2003
    7.2
    High

    CVE-2003-0034

    Last Modified: 28 Oct 2012

    Buffer overflow in the mtink status monitor, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long HOME environment variable.

    Source:Karol Wiesek
    Published:22 Jan 2003
    7.2
    High

    CVE-2003-0019

    Last Modified: 12 Nov 2012

    uml_net in the kernel-utils package for Red Hat Linux 8.0 has incorrect setuid root privileges, which allows local users to modify network interfaces, e.g. by modifying ARP entries or placing interfaces into promiscuous mode.

    Published:7 Feb 2003
    7.5
    High

    CVE-2003-0015

    Last Modified: 28 Oct 2012

    Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as demonstrated by bypassing write checks to execute Update-prog and Checkin-prog commands.

    Source:Stefan Esser
    Published:20 Jan 2003
    6.8
    Medium

    CVE-2003-0009

    Last Modified: 28 Oct 2012

    Cross-site scripting (XSS) vulnerability in Help and Support Center for Microsoft Windows Me allows remote attackers to execute arbitrary script in the Local Computer security context via an hcp:// URL with the malicious script in the topic parameter.

    Source:s0h
    Published:7 Mar 2003