CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7430  CVE-2003-0603  Candidate  Bugzilla 2.16.x before 2.16.3, 2.17.x before 2.17.4, and earlier versions allows local users to overwrite arbitrary files via a symlink attack on temporary files that are created in directories with group-writable or world-writable permissions.  Assigned (20030725)  None (candidate not yet proposed)    View
7429  CVE-2003-0602  Candidate  Multiple cross-site scripting vulnerabilities (XSS) in Bugzilla 2.16.x before 2.16.3 and 2.17.x before 2.17.4 allow remote attackers to insert arbitrary HTML or web script via (1) multiple default German and Russian HTML templates or (2) ALT and NAME attributes in AREA tags as used by the GraphViz graph generation feature for local dependency graphs.  Assigned (20030725)  None (candidate not yet proposed)    View
7428  CVE-2003-0601  Candidate  Workgroup Manager in Apple Mac OS X Server 10.2 through 10.2.6 does not disable a password for a new account before it is saved for the first time, which allows remote attackers to gain unauthorized access via the new account before it is saved.  Assigned (20030723)  None (candidate not yet proposed)    View
7427  CVE-2003-0600  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030722)  None (candidate not yet proposed)    View
7426  CVE-2003-0599  Candidate  Unknown vulnerability in the Virtual File System (VFS) capability for phpGroupWare 0.9.16preRC and versions before 0.9.14.004 with unknown implications, related to the VFS path being under the web document root.  Assigned (20030721)  None (candidate not yet proposed)    View

Page 19458 of 20943, showing 5 records out of 104715 total, starting on record 97286, ending on 97290

Actions