CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8265 | CVE-2003-1441 | Candidate | Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a denial of service (crash) via a DNS message without a question section, which triggers null dereference. | Assigned (20071022) | None (candidate not yet proposed) | View | |
8264 | CVE-2003-1440 | Candidate | SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters within an href tag, which is not properly handled by certain regular expressions. | Assigned (20071022) | None (candidate not yet proposed) | View | |
8263 | CVE-2003-1439 | Candidate | Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which could allow local users to obtain sensitive information. | Assigned (20071022) | None (candidate not yet proposed) | View | |
8262 | CVE-2003-1438 | Candidate | Race condition in BEA WebLogic Server and Express 5.1 through 7.0.0.1, when using in-memory session replication or replicated stateful session beans, causes the same buffer to be provided to two users, which could allow one user to see session data that was intended for another user. | Assigned (20071022) | None (candidate not yet proposed) | View | |
8261 | CVE-2003-1437 | Candidate | BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access. | Assigned (20071022) | None (candidate not yet proposed) | View |
Page 19291 of 20943, showing 5 records out of 104715 total, starting on record 96451, ending on 96455