CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7205  CVE-2003-0377  Candidate  SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versions, allows remote attackers to insert arbitrary SQL and execute code via certain variables, as demonstrated using the GroupName variable in SiteAdmin.ASP.  Assigned (20030604)  None (candidate not yet proposed)    View
7204  CVE-2003-0376  Candidate  Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and possibly execute arbitrary code via an Attachment Converted argument with a large number of . (dot) characters.  Assigned (20030604)  None (candidate not yet proposed)    View
7203  CVE-2003-0375  Candidate  Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to insert arbitrary HTML and web script via the "member" parameter.  Assigned (20030604)  None (candidate not yet proposed)    View
7202  CVE-2003-0374  Candidate  Multiple unknown vulnerabilities in Nessus before 2.0.6, in libnessus and possibly libnasl, a different set of vulnerabilities than those identified by CVE-2003-0372 and CVE-2003-0373, aka "similar issues in other nasl functions as well as in libnessus."  Assigned (20030604)  None (candidate not yet proposed)    View
7201  CVE-2003-0373  Candidate  Multiple buffer overflows in libnasl in Nessus before 2.0.6 allow local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code via (1) a long proto argument to the scanner_add_port function, (2) a long user argument to the ftp_log_in function, (3) a long pass argument to the ftp_log_in function.  Assigned (20030604)  None (candidate not yet proposed)    View

Page 19503 of 20943, showing 5 records out of 104715 total, starting on record 97511, ending on 97515

Actions