CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7801  CVE-2003-0977  Candidate  CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.  Assigned (20031209)  None (candidate not yet proposed)    View
7802  CVE-2003-0978  Candidate  Format string vulnerability in gpgkeys_hkp (experimental HKP interface) for the GnuPG (gpg) client 1.2.3 and earlier, and 1.3.3 and earlier, allows remote attackers or a malicious keyserver to cause a denial of service (crash) and possibly execute arbitrary code during key retrieval.  Assigned (20031209)  None (candidate not yet proposed)    View
7803  CVE-2003-0979  Candidate  FreeScripts VisitorBook LE (visitorbook.pl) does not properly escape line breaks in input, which allows remote attackers to (1) use VisitorBook as an open mail relay, when $mailuser is 1, via extra headers in the email field, or (2) cause the guestbook database to be deleted via a large number of line breaks that exceeds the $max_posts variable.  Assigned (20031210)  None (candidate not yet proposed)    View
7804  CVE-2003-0980  Candidate  Cross-site scripting (XSS) vulnerability in FreeScripts VisitorBook LE (visitorbook.pl) allows remote attackers to inject arbitrary HTML or web script via (1) the "do" parameter, (2) via the "user" parameter from a host with a malicious reverse DNS name, (3) via quote marks or ampersands in other parameters.  Assigned (20031210)  None (candidate not yet proposed)    View
7805  CVE-2003-0981  Candidate  FreeScripts VisitorBook LE (visitorbook.pl) logs the reverse DNS name of a visiting host, which allows remote attackers to spoof the origin of their incoming requests and facilitate cross-site scripting (XSS) attacks.  Assigned (20031210)  None (candidate not yet proposed)    View

Page 1561 of 20943, showing 5 records out of 104715 total, starting on record 7801, ending on 7805

Actions