Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 115

Количество 372 115

nvd логотип

CVE-2003-1518

больше 22 лет назад

Adiscon WinSyslog 4.21 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a long syslog message.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2003-1517

больше 22 лет назад

cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, which leaks the path in an error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1516

больше 22 лет назад

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2003-1515

больше 22 лет назад

Origo ASR-8100 ADSL Router 3.21 has an administration service running on port 254 that does not require a password, which allows remote attackers to cause a denial of service by restoring the factory defaults.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2003-1514

больше 22 лет назад

eMule 0.29c allows remote attackers to cause a denial of service (crash) via a long password, possibly due to a buffer overflow.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2003-1513

больше 22 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) env.jsp, (2) form.jsp, (3) session.jsp, (4) the move parameter to tictactoe.jsp, or the (5) name or (6) comment fields to guestbook.jsp.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1512

больше 22 лет назад

Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1511

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the guestName parameter to the custMsg servlet, or (3) the cookiename parameter to the CookieExample servlet.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1510

больше 22 лет назад

TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request to the cgi-bin directory.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2003-1509

больше 22 лет назад

Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne Player 6.0.11.853 allows remote attackers to execute arbitrary script in the local security zone by embedding script in a temp file before the temp file is executed by the default web browser.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-1508

больше 22 лет назад

Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1507

больше 22 лет назад

Planet Technology WGSD-1020 and WSW-2401 Ethernet switches use a default "superuser" account with the "planet" password, which allows remote attackers to gain administrative access.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-1506

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in dansguardian.pl in Adelix CensorNet 3.0 through 3.2 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the DENIEDURL parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1505

больше 22 лет назад

Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) by creating a web page or HTML e-mail with a textarea in a div element whose scrollbar-base-color is modified by a CSS style, which is then moved.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2003-1504

больше 22 лет назад

SQL injection vulnerability in variables.php in Goldlink 3.0 allows remote attackers to execute arbitrary SQL commands via the (1) vadmin_login or (2) vadmin_pass cookie in a request to goldlink.php.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-1503

больше 22 лет назад

Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long screen name.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-1502

больше 22 лет назад

mod_throttle 3.0 allows local users with Apache privileges to access shared memory that points to a file that is writable by the apache user, which could allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-1501

больше 22 лет назад

Directory traversal vulnerability in the file upload CGI of Gast Arbeiter 1.3 allows remote attackers to write arbitrary files via a .. (dot dot) in the req_file parameter.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2003-1500

больше 22 лет назад

PHP remote file inclusion vulnerability in _functions.php in cpCommerce 0.5f allows remote attackers to execute arbitrary code via the prefix parameter.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2003-1499

больше 22 лет назад

Directory traversal vulnerability in index.php in Bytehoard 0.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the infolder parameter.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-1518

Adiscon WinSyslog 4.21 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a long syslog message.

CVSS2: 7.8
7%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1517

cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, which leaks the path in an error message.

CVSS2: 5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1516

The org.apache.xalan.processor.XSLProcessorVersion class in Java Plug-in 1.4.2_01 allows signed and unsigned applets to share variables, which violates the Java security model and could allow remote attackers to read or write data belonging to a signed applet.

CVSS2: 6.8
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1515

Origo ASR-8100 ADSL Router 3.21 has an administration service running on port 254 that does not require a password, which allows remote attackers to cause a denial of service by restoring the factory defaults.

CVSS2: 7.8
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1514

eMule 0.29c allows remote attackers to cause a denial of service (crash) via a long password, possibly due to a buffer overflow.

CVSS2: 7.8
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1513

Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) env.jsp, (2) form.jsp, (3) session.jsp, (4) the move parameter to tictactoe.jsp, or the (5) name or (6) comment fields to guestbook.jsp.

CVSS2: 4.3
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1512

Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND request.

CVSS2: 5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1511

Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to test.txt, (2) the guestName parameter to the custMsg servlet, or (3) the cookiename parameter to the CookieExample servlet.

CVSS2: 4.3
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1510

TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request to the cgi-bin directory.

CVSS2: 7.8
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1509

Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne Player 6.0.11.853 allows remote attackers to execute arbitrary script in the local security zone by embedding script in a temp file before the temp file is executed by the default web browser.

CVSS2: 10
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1508

Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.

CVSS2: 4.3
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1507

Planet Technology WGSD-1020 and WSW-2401 Ethernet switches use a default "superuser" account with the "planet" password, which allows remote attackers to gain administrative access.

CVSS2: 10
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1506

Cross-site scripting (XSS) vulnerability in dansguardian.pl in Adelix CensorNet 3.0 through 3.2 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into the DENIEDURL parameter.

CVSS2: 4.3
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1505

Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) by creating a web page or HTML e-mail with a textarea in a div element whose scrollbar-base-color is modified by a CSS style, which is then moved.

CVSS2: 4.3
13%
Средний
больше 22 лет назад
nvd логотип
CVE-2003-1504

SQL injection vulnerability in variables.php in Goldlink 3.0 allows remote attackers to execute arbitrary SQL commands via the (1) vadmin_login or (2) vadmin_pass cookie in a request to goldlink.php.

CVSS2: 7.5
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1503

Buffer overflow in AOL Instant Messenger (AIM) 5.2.3292 allows remote attackers to execute arbitrary code via an aim:getfile URL with a long screen name.

CVSS2: 10
5%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1502

mod_throttle 3.0 allows local users with Apache privileges to access shared memory that points to a file that is writable by the apache user, which could allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1501

Directory traversal vulnerability in the file upload CGI of Gast Arbeiter 1.3 allows remote attackers to write arbitrary files via a .. (dot dot) in the req_file parameter.

CVSS2: 6.4
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1500

PHP remote file inclusion vulnerability in _functions.php in cpCommerce 0.5f allows remote attackers to execute arbitrary code via the prefix parameter.

CVSS2: 6.8
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1499

Directory traversal vulnerability in index.php in Bytehoard 0.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the infolder parameter.

CVSS2: 5
3%
Низкий
больше 22 лет назад

Уязвимостей на страницу