Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 557

Количество 307 557

nvd логотип

CVE-2003-0426

около 22 лет назад

The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0425

около 22 лет назад

Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple dot) in an HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0424

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0423

около 22 лет назад

parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0422

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0421

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0420

около 22 лет назад

Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-0419

около 22 лет назад

SMC Networks Barricade Wireless Cable/DSL Broadband Router SMC7004VWBR allows remote attackers to cause a denial of service via certain packets to PPTP port 1723 on the internal interface.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0418

около 22 лет назад

The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0417

около 22 лет назад

Directory traversal vulnerability in Son hServer 0.2 allows remote attackers to read arbitrary files via ".|." (modified dot-dot) sequences.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0416

около 22 лет назад

Cross-site scripting (XSS) vulnerability in index.cgi for Bandmin 1.4 allows remote attackers to insert arbitrary HTML or script via (1) the year parameter in a showmonth action, (2) the month parameter in a showmonth action, or (3) the host parameter in a showhost action.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2003-0415

около 22 лет назад

Remote PC Access Server 2.2 allows remote attackers to cause a denial of service (crash) by receiving packets from the server and sending them back to the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0414

около 22 лет назад

The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users to gain privileges by reading a plaintext password in the statefile.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0413

около 22 лет назад

Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0 for Windows 2000/XP or (2) Sun Java System Web Server 6.1 allows remote attackers to insert arbitrary web script or HTML via an HTTP request that generates an "Invalid JSP file" error, which inserts the text in the resulting error message.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2003-0412

около 22 лет назад

Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0411

около 22 лет назад

Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that uses the uppercase ".JSP" extension instead of the lowercase .jsp extension.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0410

около 22 лет назад

Buffer overflow in AnalogX Proxy 4.13 allows remote attackers to execute arbitrary code via a long URL to port 6588.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0409

около 22 лет назад

Buffer overflow in BRS WebWeaver 1.04 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP (1) POST or (2) HEAD request.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0408

около 22 лет назад

Buffer overflow in Uptime Client (UpClient) 5.0b7, and possibly other versions, allows local users to gain privileges via a long -p argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0407

около 22 лет назад

Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-0426

The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0425

Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple dot) in an HTTP request.

CVSS2: 5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0424

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0423

parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename parameter.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0422

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0421

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.

CVSS2: 10
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0420

Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.

CVSS2: 4.6
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0419

SMC Networks Barricade Wireless Cable/DSL Broadband Router SMC7004VWBR allows remote attackers to cause a denial of service via certain packets to PPTP port 1723 on the internal interface.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0418

The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0417

Directory traversal vulnerability in Son hServer 0.2 allows remote attackers to read arbitrary files via ".|." (modified dot-dot) sequences.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0416

Cross-site scripting (XSS) vulnerability in index.cgi for Bandmin 1.4 allows remote attackers to insert arbitrary HTML or script via (1) the year parameter in a showmonth action, (2) the month parameter in a showmonth action, or (3) the host parameter in a showhost action.

CVSS2: 6.8
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0415

Remote PC Access Server 2.2 allows remote attackers to cause a denial of service (crash) by receiving packets from the server and sending them back to the server.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0414

The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users to gain privileges by reading a plaintext password in the statefile.

CVSS2: 7.2
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0413

Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0 for Windows 2000/XP or (2) Sun Java System Web Server 6.1 allows remote attackers to insert arbitrary web script or HTML via an HTTP request that generates an "Invalid JSP file" error, which inserts the text in the resulting error message.

CVSS2: 6.8
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0412

Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0411

Sun ONE Application Server 7.0 for Windows 2000/XP allows remote attackers to obtain JSP source code via a request that uses the uppercase ".JSP" extension instead of the lowercase .jsp extension.

CVSS3: 7.5
10%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0410

Buffer overflow in AnalogX Proxy 4.13 allows remote attackers to execute arbitrary code via a long URL to port 6588.

CVSS2: 10
8%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0409

Buffer overflow in BRS WebWeaver 1.04 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP (1) POST or (2) HEAD request.

CVSS2: 10
8%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0408

Buffer overflow in Uptime Client (UpClient) 5.0b7, and possibly other versions, allows local users to gain privileges via a long -p argument.

CVSS2: 7.2
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0407

Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.

CVSS2: 10
4%
Низкий
около 22 лет назад

Уязвимостей на страницу