Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 863

Количество 371 863

nvd логотип

CVE-2003-1106

больше 22 лет назад

The SMTP service in Microsoft Windows 2000 before SP4 allows remote attackers to cause a denial of service (crash or hang) via an e-mail message with a malformed time stamp in the FILETIME attribute.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1105

больше 22 лет назад

Unknown vulnerability in Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to cause a denial of service (browser or Outlook Express crash) via HTML with certain input tags that are not properly rendered.

CVSS2: 2.6
EPSS: Средний
nvd логотип

CVE-2003-1104

больше 22 лет назад

Buffer overflow in IBM Tivoli Firewall Toolbox (TFST) 1.2 allows remote attackers to execute arbitrary code via unknown vectors.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-1103

больше 22 лет назад

SQL injection vulnerability in loginact.asp for Hummingbird CyberDOCS before 3.9 allows remote attackers to execute arbitrary SQL commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-1102

больше 22 лет назад

Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1101

больше 22 лет назад

Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allows remote attackers to obtain the full path of the DM Web Server via invalid login credentials, which reveals the path in an error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1100

больше 22 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allow remote attackers to inject arbitrary web script or HTML via certain vectors.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1099

больше 22 лет назад

shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in /tmp, which allows local users to cause a denial of service and possibly execute arbitrary code via a symlink attack.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2003-1098

больше 22 лет назад

The Xserver for HP-UX 11.22 was not properly built, which introduced a vulnerability that allows local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-1097

больше 22 лет назад

Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-1096

больше 22 лет назад

The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary attacks, which makes it easier for remote attackers to gain privileges via brute force password guessing attacks.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2003-1095

больше 23 лет назад

BEA WebLogic Server and Express 7.0 and 7.0.0.1, when using "memory" session persistence for web applications, does not clear authentication information when a web application is redeployed, which could allow users of that application to gain access without having to re-authenticate.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-1094

больше 22 лет назад

BEA WebLogic Server and Express version 7.0 SP3 may follow certain code execution paths that result in an incorrect current user, such as in the frequent use of JNDI initial contexts, which could allow remote authenticated users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-1093

больше 22 лет назад

BEA WebLogic Server 6.1, 7.0 and 7.0.0.1, when routing messages to a JMS target domain that is inaccessible, may leak the user's password when it throws a ResourceAllocationException.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2003-1092

больше 22 лет назад

Unknown vulnerability in the "Automatic File Content Type Recognition (AFCTR) Tool version of the file package before 3.41, related to "a memory allocation problem," has unknown impact.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-1091

больше 22 лет назад

Integer overflow in MP3Broadcaster for Apple QuickTime/Darwin Streaming Server 4.1.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed ID3 tags in MP3 files.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-1090

больше 23 лет назад

Buffer overflow in AbsoluteTelnet before 2.12 RC10 allows remote attackers to execute arbitrary code via a long window title.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2003-1089

больше 22 лет назад

index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the path in a PHP error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-1088

почти 23 года назад

Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.4 and 3.5 allows remote attackers to inject arbitrary web script or HTML via the method parameter.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-1087

больше 22 лет назад

Unknown vulnerability in diagmond and possibly other applications in HP9000 Series 700/800 running HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows remote attackers to cause a denial of service (program failure) via certain network traffic.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-1106

The SMTP service in Microsoft Windows 2000 before SP4 allows remote attackers to cause a denial of service (crash or hang) via an e-mail message with a malformed time stamp in the FILETIME attribute.

CVSS2: 5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1105

Unknown vulnerability in Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to cause a denial of service (browser or Outlook Express crash) via HTML with certain input tags that are not properly rendered.

CVSS2: 2.6
18%
Средний
больше 22 лет назад
nvd логотип
CVE-2003-1104

Buffer overflow in IBM Tivoli Firewall Toolbox (TFST) 1.2 allows remote attackers to execute arbitrary code via unknown vectors.

CVSS2: 10
7%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1103

SQL injection vulnerability in loginact.asp for Hummingbird CyberDOCS before 3.9 allows remote attackers to execute arbitrary SQL commands.

CVSS2: 7.5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1102

Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code.

CVSS2: 5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1101

Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allows remote attackers to obtain the full path of the DM Web Server via invalid login credentials, which reveals the path in an error message.

CVSS2: 5
2%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1100

Multiple cross-site scripting (XSS) vulnerabilities in Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allow remote attackers to inject arbitrary web script or HTML via certain vectors.

CVSS2: 4.3
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1099

shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in /tmp, which allows local users to cause a denial of service and possibly execute arbitrary code via a symlink attack.

CVSS2: 2.1
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1098

The Xserver for HP-UX 11.22 was not properly built, which introduced a vulnerability that allows local users to gain privileges.

CVSS2: 7.2
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1097

Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.

CVSS2: 7.2
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1096

The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary attacks, which makes it easier for remote attackers to gain privileges via brute force password guessing attacks.

CVSS2: 10
10%
Средний
больше 22 лет назад
nvd логотип
CVE-2003-1095

BEA WebLogic Server and Express 7.0 and 7.0.0.1, when using "memory" session persistence for web applications, does not clear authentication information when a web application is redeployed, which could allow users of that application to gain access without having to re-authenticate.

CVSS2: 4.6
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-1094

BEA WebLogic Server and Express version 7.0 SP3 may follow certain code execution paths that result in an incorrect current user, such as in the frequent use of JNDI initial contexts, which could allow remote authenticated users to gain privileges.

CVSS2: 7.2
1%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1093

BEA WebLogic Server 6.1, 7.0 and 7.0.0.1, when routing messages to a JMS target domain that is inaccessible, may leak the user's password when it throws a ResourceAllocationException.

CVSS2: 4.6
0%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1092

Unknown vulnerability in the "Automatic File Content Type Recognition (AFCTR) Tool version of the file package before 3.41, related to "a memory allocation problem," has unknown impact.

CVSS2: 7.5
4%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1091

Integer overflow in MP3Broadcaster for Apple QuickTime/Darwin Streaming Server 4.1.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed ID3 tags in MP3 files.

CVSS2: 7.5
6%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1090

Buffer overflow in AbsoluteTelnet before 2.12 RC10 allows remote attackers to execute arbitrary code via a long window title.

CVSS2: 10
12%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-1089

index.php for Zorum 3.4 allows remote attackers to determine the full path of the web root via invalid parameter names, which reveals the path in a PHP error message.

CVSS2: 5
3%
Низкий
больше 22 лет назад
nvd логотип
CVE-2003-1088

Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.4 and 3.5 allows remote attackers to inject arbitrary web script or HTML via the method parameter.

CVSS2: 4.3
2%
Низкий
почти 23 года назад
nvd логотип
CVE-2003-1087

Unknown vulnerability in diagmond and possibly other applications in HP9000 Series 700/800 running HP-UX B.11.00, B.11.04, B.11.11, and B.11.22 allows remote attackers to cause a denial of service (program failure) via certain network traffic.

CVSS2: 5
3%
Низкий
больше 22 лет назад

Уязвимостей на страницу