Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 149

Количество 371 149

nvd логотип

CVE-2003-0042

больше 23 лет назад

Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, allows remote attackers to list directories even with an index.html or other file present, or obtain unprocessed source code for a JSP file, via a URL containing a null character.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2003-0041

больше 23 лет назад

Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0040

больше 23 лет назад

SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0039

больше 23 лет назад

ISC dhcrelay (dhcp-relay) 3.0rc9 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (packet storm) via a certain BOOTP packet that is forwarded to a broadcast MAC address, causing an infinite loop that is not restricted by a hop count.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0038

больше 23 лет назад

Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2003-0037

больше 23 лет назад

Buffer overflows in noffle news server 1.0.1 and earlier allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0036

больше 23 лет назад

ml85p, as included in the printer-drivers package for Mandrake Linux, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable filenames of the form "mlg85p%d".

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2003-0035

больше 23 лет назад

Buffer overflow in escputil, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long printer-name command line argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0034

больше 23 лет назад

Buffer overflow in the mtink status monitor, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long HOME environment variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2003-0033

больше 23 лет назад

Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2003-0032

больше 23 лет назад

Memory leak in libmcrypt before 2.5.5 allows attackers to cause a denial of service (memory exhaustion) via a large number of requests to the application, which causes libmcrypt to dynamically load algorithms via libtool.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0031

больше 23 лет назад

Multiple buffer overflows in libmcrypt before 2.5.5 allow attackers to cause a denial of service (crash).

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0030

больше 23 лет назад

Buffer overflows in protegrity.dll of Protegrity Secure.Data Extension Feature (SEF) before 2.2.3.9 allow attackers with SQL access to execute arbitrary code via the extended stored procedures (1) xp_pty_checkusers, (2) xp_pty_insert, or (3) xp_pty_select.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2003-0028

больше 23 лет назад

Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0027

больше 23 лет назад

Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2003-0026

больше 23 лет назад

Multiple stack-based buffer overflows in the error handling routines of the minires library, as used in the NSUPDATE capability for ISC DHCPD 3.0 through 3.0.1RC10, allow remote attackers to execute arbitrary code via a DHCP message containing a long hostname.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0025

больше 23 лет назад

Multiple SQL injection vulnerabilities in IMP 2.2.8 and earlier allow remote attackers to perform unauthorized database activities and possibly gain privileges via certain database functions such as check_prefs() in db.pgsql, as demonstrated using mailbox.php3.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2003-0024

больше 23 лет назад

The menuBar feature in aterm 0.42 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2003-0023

больше 23 лет назад

The menuBar feature in rxvt 2.7.8 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2003-0022

больше 23 лет назад

The "screen dump" feature in rxvt 2.7.8 allows attackers to overwrite arbitrary files via a certain character escape sequence when it is echoed to a user's terminal, e.g. when the user views a file containing the malicious sequence.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2003-0042

Jakarta Tomcat before 3.3.1a, when used with JDK 1.3.1 or earlier, allows remote attackers to list directories even with an index.html or other file present, or obtain unprocessed source code for a JSP file, via a URL containing a null character.

CVSS2: 5
46%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0041

Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.

CVSS2: 10
4%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0040

SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name.

CVSS2: 7.5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0039

ISC dhcrelay (dhcp-relay) 3.0rc9 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (packet storm) via a certain BOOTP packet that is forwarded to a broadcast MAC address, causing an infinite loop that is not restricted by a hop count.

CVSS2: 5
8%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0038

Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters.

CVSS2: 4.3
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0037

Buffer overflows in noffle news server 1.0.1 and earlier allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code.

CVSS2: 7.5
3%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0036

ml85p, as included in the printer-drivers package for Mandrake Linux, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable filenames of the form "mlg85p%d".

CVSS2: 6.2
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0035

Buffer overflow in escputil, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long printer-name command line argument.

CVSS2: 7.2
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0034

Buffer overflow in the mtink status monitor, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long HOME environment variable.

CVSS2: 7.2
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0033

Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC packets.

CVSS2: 10
12%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0032

Memory leak in libmcrypt before 2.5.5 allows attackers to cause a denial of service (memory exhaustion) via a large number of requests to the application, which causes libmcrypt to dynamically load algorithms via libtool.

CVSS2: 5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0031

Multiple buffer overflows in libmcrypt before 2.5.5 allow attackers to cause a denial of service (crash).

CVSS2: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0030

Buffer overflows in protegrity.dll of Protegrity Secure.Data Extension Feature (SEF) before 2.2.3.9 allow attackers with SQL access to execute arbitrary code via the extended stored procedures (1) xp_pty_checkusers, (2) xp_pty_insert, or (3) xp_pty_select.

CVSS2: 10
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0028

Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.

CVSS2: 7.5
15%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0027

Directory traversal vulnerability in Sun Kodak Color Management System (KCMS) library service daemon (kcms_server) allows remote attackers to read arbitrary files via the KCS_OPEN_PROFILE procedure.

CVSS2: 5
26%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0026

Multiple stack-based buffer overflows in the error handling routines of the minires library, as used in the NSUPDATE capability for ISC DHCPD 3.0 through 3.0.1RC10, allow remote attackers to execute arbitrary code via a DHCP message containing a long hostname.

CVSS2: 7.5
19%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0025

Multiple SQL injection vulnerabilities in IMP 2.2.8 and earlier allow remote attackers to perform unauthorized database activities and possibly gain privileges via certain database functions such as check_prefs() in db.pgsql, as demonstrated using mailbox.php3.

CVSS2: 7.5
28%
Средний
больше 23 лет назад
nvd логотип
CVE-2003-0024

The menuBar feature in aterm 0.42 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.

CVSS2: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0023

The menuBar feature in rxvt 2.7.8 allows attackers to modify menu options and execute arbitrary commands via a certain character escape sequence that inserts the commands into the menu.

CVSS2: 5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2003-0022

The "screen dump" feature in rxvt 2.7.8 allows attackers to overwrite arbitrary files via a certain character escape sequence when it is echoed to a user's terminal, e.g. when the user views a file containing the malicious sequence.

CVSS2: 5
1%
Низкий
больше 23 лет назад

Уязвимостей на страницу