CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8155  CVE-2003-1331  Candidate  Stack-based buffer overflow in the mysql_real_connect function in the MySql client library (libmysqlclient) 4.0.13 and earlier allows local users to execute arbitrary code via a long socket name, a different vulnerability than CVE-2001-1453.  Assigned (20070625)  None (candidate not yet proposed)    View
8154  CVE-2003-1330  Candidate  Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.  Assigned (20070530)  None (candidate not yet proposed)    View
8153  CVE-2003-1329  Candidate  ftpd.c in wu-ftpd 2.6.2, when running on "operating systems that only allow one non-connected socket bound to the same local address," does not close failed connections, which allows remote attackers to cause a denial of service.  Assigned (20070521)  None (candidate not yet proposed)    View
8152  CVE-2003-1328  Entry  The showHelp() function in Microsoft Internet Explorer 5.01, 5.5, and 6.0 supports certain types of pluggable protocols that allow remote attackers to bypass the cross-domain security model and execute arbitrary code, aka "Improper Cross Domain Security Validation with ShowHelp functionality."        View
8151  CVE-2003-1327  Candidate  Buffer overflow in the SockPrintf function in wu-ftpd 2.6.2 and earlier, when compiled with MAIL_ADMIN option enabled on a system that supports very long pathnames, might allow remote anonymous users to execute arbitrary code by uploading a file with a long pathname, which triggers the overflow when wu-ftpd constructs a notification message to the administrator.  Assigned (20070514)  None (candidate not yet proposed)    View

Page 19313 of 20943, showing 5 records out of 104715 total, starting on record 96561, ending on 96565

Actions