Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 344 000

Количество 344 000

nvd логотип

CVE-2003-0264

почти 23 года назад

Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0263

почти 23 года назад

Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0262

почти 23 года назад

leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges by exploiting unknown vulnerabilities related to the escalated privileges, which KATAXWR is not designed to have.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0261

почти 23 года назад

fuzz 0.6 and earlier creates temporary files insecurely, which could allow local users to gain root privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-0260

почти 23 года назад

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7A allow remote attackers to cause a denial of service (slowdown and possibly reload) via a flood of malformed ICMP packets.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0259

почти 23 года назад

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7 allows remote attackers to cause a denial of service (reload) via a malformed SSH initialization packet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0258

почти 23 года назад

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 3.5.x through 4.0.REL, when enabling IPSec over TCP for a port on the concentrator, allow remote attackers to reach the private network without authentication.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0257

почти 22 года назад

Format string vulnerability in the printer capability for IBM AIX .3, 5.1, and 5.2 allows local users to gain printq or root privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0256

почти 23 года назад

The GnuPG plugin in kopete before 0.6.2 does not properly cleanse the command line when executing gpg, which allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0255

почти 23 года назад

The key validation code in GnuPG before 1.2.2 does not properly determine the validity of keys with multiple user IDs and assigns the greatest validity of the most valid user ID, which prevents GnuPG from warning the encrypting user when a user ID does not have a trusted path.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0254

больше 22 лет назад

Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0253

больше 22 лет назад

The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0252

больше 22 лет назад

Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.

CVSS3: 9.8
EPSS: Средний
nvd логотип

CVE-2003-0251

больше 22 лет назад

ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0249

больше 22 лет назад

PHP treats unknown methods such as "PoSt" as a GET request, which could allow attackers to intended access restrictions if PHP is running on a server that passes on all methods, such as Apache httpd 2.0, as demonstrated using a Limit directive. NOTE: this issue has been disputed by the Apache security team, saying "It is by design that PHP allows scripts to process any request method. A script which does not explicitly verify the request method will hence be processed as normal for arbitrary methods. It is therefore expected behaviour that one cannot implement per-method access control using the Apache configuration alone, which is the assumption made in this report.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0248

почти 23 года назад

The mxcsr code in Linux kernel 2.4 allows attackers to modify CPU state registers via a malformed address.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0247

почти 23 года назад

Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0246

почти 23 года назад

The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2003-0245

почти 23 года назад

Vulnerability in the apr_psprintf function in the Apache Portable Runtime (APR) library for Apache 2.0.37 through 2.0.45 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long strings, as demonstrated using XML objects to mod_dav, and possibly other vectors.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-2003-0244

почти 23 года назад

The route cache implementation in Linux 2.4, and the Netfilter IP conntrack module, allows remote attackers to cause a denial of service (CPU consumption) via packets with forged source addresses that cause a large number of hash table collisions.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-0264

Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.

CVSS2: 7.5
55%
Средний
почти 23 года назад
nvd логотип
CVE-2003-0263

Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.

CVSS2: 7.5
20%
Средний
почти 23 года назад
nvd логотип
CVE-2003-0262

leksbot 1.2.3 in Debian GNU/Linux installs the KATAXWR as setuid root, which allows local users to gain root privileges by exploiting unknown vulnerabilities related to the escalated privileges, which KATAXWR is not designed to have.

CVSS2: 7.2
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0261

fuzz 0.6 and earlier creates temporary files insecurely, which could allow local users to gain root privileges.

CVSS2: 4.6
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0260

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7A allow remote attackers to cause a denial of service (slowdown and possibly reload) via a flood of malformed ICMP packets.

CVSS2: 5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0259

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 2.x.x through 3.6.7 allows remote attackers to cause a denial of service (reload) via a malformed SSH initialization packet.

CVSS2: 5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0258

Cisco VPN 3000 series concentrators and Cisco VPN 3002 Hardware Client 3.5.x through 4.0.REL, when enabling IPSec over TCP for a port on the concentrator, allow remote attackers to reach the private network without authentication.

CVSS2: 7.5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0257

Format string vulnerability in the printer capability for IBM AIX .3, 5.1, and 5.2 allows local users to gain printq or root privileges.

CVSS2: 7.2
0%
Низкий
почти 22 года назад
nvd логотип
CVE-2003-0256

The GnuPG plugin in kopete before 0.6.2 does not properly cleanse the command line when executing gpg, which allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0255

The key validation code in GnuPG before 1.2.2 does not properly determine the validity of keys with multiple user IDs and assigns the greatest validity of the most valid user ID, which prevents GnuPG from warning the encrypting user when a user ID does not have a trusted path.

CVSS2: 10
4%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0254

Apache 2 before 2.0.47, when running on an IPv6 host, allows attackers to cause a denial of service (CPU consumption by infinite loop) when the FTP proxy server fails to create an IPv6 socket.

CVSS2: 5
7%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-0253

The prefork MPM in Apache 2 before 2.0.47 does not properly handle certain errors from accept, which could lead to a denial of service.

CVSS2: 5
7%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-0252

Off-by-one error in the xlog function of mountd in the Linux NFS utils package (nfs-utils) before 1.0.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain RPC requests to mountd that do not contain newlines.

CVSS3: 9.8
16%
Средний
больше 22 лет назад
nvd логотип
CVE-2003-0251

ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block.

CVSS2: 5
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-0249

PHP treats unknown methods such as "PoSt" as a GET request, which could allow attackers to intended access restrictions if PHP is running on a server that passes on all methods, such as Apache httpd 2.0, as demonstrated using a Limit directive. NOTE: this issue has been disputed by the Apache security team, saying "It is by design that PHP allows scripts to process any request method. A script which does not explicitly verify the request method will hence be processed as normal for arbitrary methods. It is therefore expected behaviour that one cannot implement per-method access control using the Apache configuration alone, which is the assumption made in this report.

CVSS2: 7.5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-0248

The mxcsr code in Linux kernel 2.4 allows attackers to modify CPU state registers via a malformed address.

CVSS2: 10
1%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0247

Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").

CVSS2: 5
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0246

The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.

CVSS2: 3.6
0%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-0245

Vulnerability in the apr_psprintf function in the Apache Portable Runtime (APR) library for Apache 2.0.37 through 2.0.45 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long strings, as demonstrated using XML objects to mod_dav, and possibly other vectors.

CVSS2: 5
84%
Высокий
почти 23 года назад
nvd логотип
CVE-2003-0244

The route cache implementation in Linux 2.4, and the Netfilter IP conntrack module, allows remote attackers to cause a denial of service (CPU consumption) via packets with forged source addresses that cause a large number of hash table collisions.

CVSS2: 5
7%
Низкий
почти 23 года назад

Уязвимостей на страницу