CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8390  CVE-2003-1566  Candidate  Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive information without detection.  Assigned (20090114)  None (candidate not yet proposed)    View
8389  CVE-2003-1565  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1565. Reason: This candidate is a duplicate of CVE-2002-1565. Notes: All CVE users should reference CVE-2002-1565 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20030805)  None (candidate not yet proposed)    View
8388  CVE-2003-1564  Candidate  libxml2, possibly before 2.5.0, does not properly detect recursion during entity expansion, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, aka the "billion laughs attack."  Assigned (20080902)  None (candidate not yet proposed)    View
8387  CVE-2003-1563  Candidate  Sun Cluster 2.2 through 3.2 for Oracle Parallel Server / Real Application Clusters (OPS/RAC) allows local users to cause a denial of service (cluster node panic or abort) by launching a daemon listening on a TCP port that would otherwise be used by the Distributed Lock Manager (DLM), possibly involving this daemon responding in a manner that spoofs a cluster reconfiguration.  Assigned (20080818)  None (candidate not yet proposed)    View
8386  CVE-2003-1562  Candidate  sshd in OpenSSH 3.6.1p2 and earlier, when PermitRootLogin is disabled and using PAM keyboard-interactive authentication, does not insert a delay after a root login attempt with the correct password, which makes it easier for remote attackers to use timing differences to determine if the password step of a multi-step authentication is successful, a different vulnerability than CVE-2003-0190.  Assigned (20080803)  None (candidate not yet proposed)    View

Page 19266 of 20943, showing 5 records out of 104715 total, starting on record 96326, ending on 96330

Actions