Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 557

Количество 307 557

nvd логотип

CVE-2003-0447

около 22 лет назад

The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated.

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2003-0446

около 22 лет назад

Cross-site scripting (XSS) in Internet Explorer 5.5 and 6.0, possibly in a component that is also used by other Microsoft products, allows remote attackers to insert arbitrary web script via an XML file that contains a parse error, which inserts the script in the resulting error message.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2003-0445

около 22 лет назад

Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0444

больше 21 года назад

Heap-based buffer overflow in GTKSee 0.5 and 0.5.1 allows remote attackers to execute arbitrary code via a PNG image of certain color depths.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0442

около 22 лет назад

Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2003-0441

больше 21 года назад

Multiple buffer overflows in Orville Write (orville-write) 2.53 and earlier allow local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0440

около 22 лет назад

The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-0439

больше 8 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2003. Notes: none

EPSS: Низкий
nvd логотип

CVE-2003-0438

около 22 лет назад

eldav WebDAV client for Emacs, version 0.7.2 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2003-0437

около 22 лет назад

Buffer overflow in search.cgi for mnoGoSearch 3.2.10 allows remote attackers to execute arbitrary code via a long tmplt parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0436

около 22 лет назад

Buffer overflow in search.cgi for mnoGoSearch 3.1.20 allows remote attackers to execute arbitrary code via a long ul parameter.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0435

около 22 лет назад

Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0434

около 22 лет назад

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0433

около 22 лет назад

Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0432

около 22 лет назад

Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0431

около 22 лет назад

The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0430

около 22 лет назад

The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0429

около 22 лет назад

The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0428

около 22 лет назад

Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0427

около 22 лет назад

Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-0447

The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated.

CVSS2: 5.1
30%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0446

Cross-site scripting (XSS) in Internet Explorer 5.5 and 6.0, possibly in a component that is also used by other Microsoft products, allows remote attackers to insert arbitrary web script via an XML file that contains a parse error, which inserts the script in the resulting error message.

CVSS2: 4.3
43%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0445

Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.

CVSS2: 7.5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0444

Heap-based buffer overflow in GTKSee 0.5 and 0.5.1 allows remote attackers to execute arbitrary code via a PNG image of certain color depths.

CVSS2: 7.5
3%
Низкий
больше 21 года назад
nvd логотип
CVE-2003-0442

Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.

CVSS2: 4.3
31%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0441

Multiple buffer overflows in Orville Write (orville-write) 2.53 and earlier allow local users to gain privileges.

CVSS2: 7.2
0%
Низкий
больше 21 года назад
nvd логотип
CVE-2003-0440

The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 4.6
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0439

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2003. Notes: none

больше 8 лет назад
nvd логотип
CVE-2003-0438

eldav WebDAV client for Emacs, version 0.7.2 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 1.2
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0437

Buffer overflow in search.cgi for mnoGoSearch 3.2.10 allows remote attackers to execute arbitrary code via a long tmplt parameter.

CVSS2: 7.5
5%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0436

Buffer overflow in search.cgi for mnoGoSearch 3.1.20 allows remote attackers to execute arbitrary code via a long ul parameter.

CVSS2: 7.5
13%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0435

Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.

CVSS2: 7.5
3%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0434

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

CVSS2: 7.5
26%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0433

Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.

CVSS2: 7.5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0432

Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0431

The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0430

The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0429

The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.

CVSS2: 7.5
3%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0428

Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.

CVSS2: 5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0427

Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.

CVSS2: 7.5
3%
Низкий
около 22 лет назад

Уязвимостей на страницу