CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8205 | CVE-2003-1381 | Candidate | Format string vulnerability in AMX 0.9.2 and earlier, a plugin for Valve Software"s Half-Life Server, allows remote attackers to execute arbitrary commands via format string specifiers in the amx_say command. | Assigned (20071018) | None (candidate not yet proposed) | View | |
8204 | CVE-2003-1380 | Candidate | Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an "ls @../" command, or (2) list files above the root via a "mget @../FILE" command. | Assigned (20071018) | None (candidate not yet proposed) | View | |
8203 | CVE-2003-1379 | Candidate | clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the characters (1) A, which reveals the date and time, (2) F, (3) M, which reveals "ifconfig" information, (4) P, which lists the processes, (5) Y, which reveals the snort log files, or (6) b, which reveals /var/log/messages. | Assigned (20071018) | None (candidate not yet proposed) | View | |
8202 | CVE-2003-1378 | Candidate | Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077. | Assigned (20071018) | None (candidate not yet proposed) | View | |
8201 | CVE-2003-1377 | Candidate | Buffer overflow in the reverse DNS lookup of Smart IRC Daemon (SIRCD) 0.4.0 and 0.4.4 allows remote attackers to execute arbitrary code via a client with a long hostname. | Assigned (20071018) | None (candidate not yet proposed) | View |
Page 19303 of 20943, showing 5 records out of 104715 total, starting on record 96511, ending on 96515