Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 608

Количество 307 608

nvd логотип

CVE-2003-0437

около 22 лет назад

Buffer overflow in search.cgi for mnoGoSearch 3.2.10 allows remote attackers to execute arbitrary code via a long tmplt parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0436

около 22 лет назад

Buffer overflow in search.cgi for mnoGoSearch 3.1.20 allows remote attackers to execute arbitrary code via a long ul parameter.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0435

около 22 лет назад

Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0434

около 22 лет назад

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0433

около 22 лет назад

Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0432

около 22 лет назад

Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0431

около 22 лет назад

The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0430

около 22 лет назад

The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0429

около 22 лет назад

The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0428

около 22 лет назад

Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0427

около 22 лет назад

Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0426

около 22 лет назад

The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0425

около 22 лет назад

Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple dot) in an HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0424

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0423

около 22 лет назад

parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0422

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0421

около 22 лет назад

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0420

около 22 лет назад

Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-0419

около 22 лет назад

SMC Networks Barricade Wireless Cable/DSL Broadband Router SMC7004VWBR allows remote attackers to cause a denial of service via certain packets to PPTP port 1723 on the internal interface.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0418

около 22 лет назад

The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-0437

Buffer overflow in search.cgi for mnoGoSearch 3.2.10 allows remote attackers to execute arbitrary code via a long tmplt parameter.

CVSS2: 7.5
5%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0436

Buffer overflow in search.cgi for mnoGoSearch 3.1.20 allows remote attackers to execute arbitrary code via a long ul parameter.

CVSS2: 7.5
13%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0435

Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.

CVSS2: 7.5
3%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0434

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

CVSS2: 7.5
26%
Средний
около 22 лет назад
nvd логотип
CVE-2003-0433

Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.

CVSS2: 7.5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0432

Ethereal 0.9.12 and earlier does not handle certain strings properly, with unknown consequences, in the (1) BGP, (2) WTP, (3) DNS, (4) 802.11, (5) ISAKMP, (6) WSP, (7) CLNP, (8) ISIS, and (9) RMI dissectors.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0431

The tvb_get_nstringz0 function in Ethereal 0.9.12 and earlier does not properly handle a zero-length buffer size, with unknown consequences.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0430

The SPNEGO dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (crash) via an invalid ASN.1 value.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0429

The OSI dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via invalid IPv4 or IPv6 prefix lengths, possibly triggering a buffer overflow.

CVSS2: 7.5
3%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0428

Unknown vulnerability in the DCERPC (DCE/RPC) dissector in Ethereal 0.9.12 and earlier allows remote attackers to cause a denial of service (memory consumption) via a certain NDR string.

CVSS2: 5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0427

Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.

CVSS2: 7.5
3%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0426

The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a "Setup Assistant" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.

CVSS2: 10
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0425

Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple dot) in an HTTP request.

CVSS2: 5
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0424

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0423

parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename parameter.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0422

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0421

Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.

CVSS2: 10
2%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0420

Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.

CVSS2: 4.6
0%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0419

SMC Networks Barricade Wireless Cable/DSL Broadband Router SMC7004VWBR allows remote attackers to cause a denial of service via certain packets to PPTP port 1723 on the internal interface.

CVSS2: 5
1%
Низкий
около 22 лет назад
nvd логотип
CVE-2003-0418

The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.

CVSS2: 5
1%
Низкий
около 22 лет назад

Уязвимостей на страницу