CSV
181,465 results for "vulnerability" Page 61
CVE-2003-0528

Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed RPC request with a long filename parameter, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0715.

Sep 17, 2003 48 affected product(s) NVD
10.0
CVSS
41.0%
EPSS
⚡ 52.3
CVE-2003-0715

Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed DCERPC DCOM object activation request packet with modified length fields, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0528.

Sep 17, 2003 48 affected product(s) NVD
10.0
CVSS
40.3%
EPSS
⚡ 52.1
CVE-2003-0693

A "buffer management error" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.

Sep 22, 2003 1 affected product(s) NVD
10.0
CVSS
11.4%
EPSS
⚡ 43.4
CVE-2003-0502

Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0421.

Aug 27, 2003 1 affected product(s) NVD
10.0
CVSS
3.4%
EPSS
⚡ 41
CVE-2003-0421

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.

Aug 27, 2003 1 affected product(s) NVD
10.0
CVSS
2.9%
EPSS
⚡ 40.9
CVE-2003-0599

Unknown vulnerability in the Virtual File System (VFS) capability for phpGroupWare 0.9.16preRC and versions before 0.9.14.004 with unknown implications, related to the VFS path being under the web document root.

Aug 27, 2003 2 affected product(s) NVD
10.0
CVSS
1.8%
EPSS
⚡ 40.6
CVE-2003-0784

Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifiers.

Oct 6, 2003 3 affected product(s) NVD
10.0
CVSS
2.1%
EPSS
⚡ 40.6
CVE-2003-0531

Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to access and execute script in the My Computer domain using the browser cache via crafted Content-Type and Content-Disposition headers, aka the "Browser Cache Script Execution in My Computer Zone" vulnerability.

Aug 27, 2003 9 affected product(s) NVD
7.5
CVSS
26.5%
EPSS
⚡ 37.9
CVE-2003-0532

Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly determine object types that are returned by web servers, which could allow remote attackers to execute arbitrary code via an object tag with a data parameter to a malicious file hosted on a server that returns an unsafe Content-Type, aka the "Object Type" vulnerability.

Aug 27, 2003 9 affected product(s) NVD
7.5
CVSS
23.0%
EPSS
⚡ 36.9
CVE-2002-1567

Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1 allows remote attackers to execute arbitrary web script and steal cookies via a URL with encoded newlines followed by a request to a .jsp file whose name contains the script.

Oct 6, 2003 1 affected product(s) NVD
6.8
CVSS
27.1%
EPSS
⚡ 35.3
CVE-2003-0695

Multiple "buffer management errors" in OpenSSH before 3.7.1 may allow attackers to cause a denial of service or execute arbitrary code using (1) buffer_init in buffer.c, (2) buffer_free in buffer.c, or (3) a separate function in channels.c, a different vulnerability than CVE-2003-0693.

Oct 6, 2003 1 affected product(s) NVD
7.5
CVSS
3.9%
EPSS
⚡ 31.2
CVE-2003-0650

Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade, possibly versions before 1.3e, allows remote attackers to overwrite arbitrary files and execute arbitrary code via .. (dot dot) sequences in filenames in a .APK (Zip) file.

Aug 27, 2003 1 affected product(s) NVD
7.5
CVSS
3.7%
EPSS
⚡ 31.1
CVE-2003-0616

Format string vulnerability in ePO service for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request with format strings in the computerlist parameter, which are used when logging a failed name resolution.

Aug 27, 2003 4 affected product(s) NVD
7.5
CVSS
3.0%
EPSS
⚡ 30.9
CVE-2003-0672

Format string vulnerability in pam-pgsql 0.5.2 and earlier allows remote attackers to execute arbitrary code via the username that isp rovided during authentication, which is not properly handled when recording a log message.

Aug 27, 2003 2 affected product(s) NVD
7.5
CVSS
3.1%
EPSS
⚡ 30.9
CVE-2003-0699

The C-Media PCI sound driver in Linux before 2.4.21 does not use the get_user function to access userspace, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0700.

Aug 27, 2003 2 affected product(s) NVD
7.5
CVSS
2.0%
EPSS
⚡ 30.6
CVE-2003-0779

SQL injection vulnerability in the Call Detail Record (CDR) logging functionality for Asterisk allows remote attackers to execute arbitrary SQL via a CallerID string.

Sep 22, 2003 7 affected product(s) NVD
7.5
CVSS
1.5%
EPSS
⚡ 30.4
CVE-2003-0680

Unknown vulnerability in NFS for SGI IRIX 6.5.21 and earlier may allow an NFS client to bypass read-only restrictions.

Oct 6, 2003 3 affected product(s) NVD
7.5
CVSS
1.2%
EPSS
⚡ 30.4
CVE-2003-0230

Microsoft SQL Server 7, 2000, and MSDE allows local users to gain privileges by hijacking a named pipe during the authentication of another user, aka the "Named Pipe Hijacking" vulnerability.

Aug 27, 2003 12 affected product(s) NVD
7.2
CVSS
2.3%
EPSS
⚡ 29.5
CVE-2003-0590

Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script via the post icon (image_subject) field.

Aug 18, 2003 1 affected product(s) NVD
7.1
CVSS
2.2%
EPSS
⚡ 29.1
CVE-2003-0671

Format string vulnerability in tcpflow, when used in a setuid context, allows local users to execute arbitrary code via the device name argument, as demonstrated in Sustworks IPNetSentryX and IPNetMonitorX the setuid program RunTCPFlow.

Aug 27, 2003 4 affected product(s) NVD
7.2
CVSS
0.5%
EPSS
⚡ 29