CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8130  CVE-2003-1306  Candidate  Microsoft URLScan 2.5, with the RemoveServerHeader option enabled, allows remote attackers to obtain sensitive information (server name and version) via an HTTP request that generates certain errors such as 400 "Bad Request," which leak the Server header in the response.  Assigned (20061009)  None (candidate not yet proposed)    View
8129  CVE-2003-1305  Candidate  Microsoft Internet Explorer allows remote attackers to cause a denial of service (resource consumption) via a Javascript src attribute that recursively loads the current web page.  Assigned (20060829)  None (candidate not yet proposed)    View
8128  CVE-2003-1304  Candidate  EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information via a direct request.  Assigned (20060712)  None (candidate not yet proposed)    View
8127  CVE-2003-1303  Candidate  Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long e-mail address in a (1) To or (2) From header.  Assigned (20060614)  None (candidate not yet proposed)    View
8126  CVE-2003-1302  Candidate  The IMAP functionality in PHP before 4.3.1 allows remote attackers to cause a denial of service via an e-mail message with a (1) To or (2) From header with an address that contains a large number of "" (backslash) characters.  Assigned (20060614)  None (candidate not yet proposed)    View

Page 19318 of 20943, showing 5 records out of 104715 total, starting on record 96586, ending on 96590

Actions