CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8205  CVE-2003-1381  Candidate  Format string vulnerability in AMX 0.9.2 and earlier, a plugin for Valve Software"s Half-Life Server, allows remote attackers to execute arbitrary commands via format string specifiers in the amx_say command.  Assigned (20071018)  None (candidate not yet proposed)    View
8204  CVE-2003-1380  Candidate  Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an "ls @../" command, or (2) list files above the root via a "mget @../FILE" command.  Assigned (20071018)  None (candidate not yet proposed)    View
8203  CVE-2003-1379  Candidate  clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the characters (1) A, which reveals the date and time, (2) F, (3) M, which reveals "ifconfig" information, (4) P, which lists the processes, (5) Y, which reveals the snort log files, or (6) b, which reveals /var/log/messages.  Assigned (20071018)  None (candidate not yet proposed)    View
8202  CVE-2003-1378  Candidate  Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077.  Assigned (20071018)  None (candidate not yet proposed)    View
8201  CVE-2003-1377  Candidate  Buffer overflow in the reverse DNS lookup of Smart IRC Daemon (SIRCD) 0.4.0 and 0.4.4 allows remote attackers to execute arbitrary code via a client with a long hostname.  Assigned (20071018)  None (candidate not yet proposed)    View

Page 19303 of 20943, showing 5 records out of 104715 total, starting on record 96511, ending on 96515

Actions