CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7665 | CVE-2003-0841 | Candidate | The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7664 | CVE-2003-0840 | Candidate | Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7663 | CVE-2003-0839 | Candidate | Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a "shell:" link. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7662 | CVE-2003-0838 | Candidate | Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserting ActiveX object code with a "data" tag pointing to the malicious code, which Internet Explorer treats as HTML or Javascript, but later executes as an HTA application, a different vulnerability than CVE-2003-0532, and as exploited using the QHosts Trojan horse (aka Trojan.Qhosts, QHosts-1, VBS.QHOSTS, or aolfix.exe). | Assigned (20031002) | None (candidate not yet proposed) | View | |
7661 | CVE-2003-0837 | Candidate | Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 for Windows, before Fixpak 10a, allows attackers with "Connect" privileges to execute arbitrary code via the INVOKE command. | Assigned (20030929) | None (candidate not yet proposed) | View |
Page 19411 of 20943, showing 5 records out of 104715 total, starting on record 97051, ending on 97055