CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8130 | CVE-2003-1306 | Candidate | Microsoft URLScan 2.5, with the RemoveServerHeader option enabled, allows remote attackers to obtain sensitive information (server name and version) via an HTTP request that generates certain errors such as 400 "Bad Request," which leak the Server header in the response. | Assigned (20061009) | None (candidate not yet proposed) | View | |
8129 | CVE-2003-1305 | Candidate | Microsoft Internet Explorer allows remote attackers to cause a denial of service (resource consumption) via a Javascript src attribute that recursively loads the current web page. | Assigned (20060829) | None (candidate not yet proposed) | View | |
8128 | CVE-2003-1304 | Candidate | EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information via a direct request. | Assigned (20060712) | None (candidate not yet proposed) | View | |
8127 | CVE-2003-1303 | Candidate | Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long e-mail address in a (1) To or (2) From header. | Assigned (20060614) | None (candidate not yet proposed) | View | |
8126 | CVE-2003-1302 | Candidate | The IMAP functionality in PHP before 4.3.1 allows remote attackers to cause a denial of service via an e-mail message with a (1) To or (2) From header with an address that contains a large number of "" (backslash) characters. | Assigned (20060614) | None (candidate not yet proposed) | View |
Page 19318 of 20943, showing 5 records out of 104715 total, starting on record 96586, ending on 96590