CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7120  CVE-2003-0292  Candidate  Cross-site scripting (XSS) vulnerability in Inktomi Traffic-Server 5.5.1 allows remote attackers to insert arbitrary web script or HTML into an error page that appears to come from the domain that the client is visiting, aka "Man-in-the-Middle" XSS.  Assigned (20030514)  None (candidate not yet proposed)    View
7119  CVE-2003-0291  Candidate  3com OfficeConnect Remote 812 ADSL Router 1.1.7 does not properly clear memory from DHCP responses, which allows remote attackers to identify the contents of previous HTTP requests by sniffing DHCP packets.  Assigned (20030514)  None (candidate not yet proposed)    View
7118  CVE-2003-0290  Candidate  Memory leak in eServ 2.9x allows remote attackers to cause a denial of service (memory exhaustion) via a large number of connections, whose memory is not freed when the connection is terminated.  Assigned (20030513)  None (candidate not yet proposed)    View
7117  CVE-2003-0289  Candidate  Format string vulnerability in scsiopen.c of the cdrecord program in cdrtools 2.0 allows local users to gain privileges via format string specifiers in the dev parameter.  Assigned (20030513)  None (candidate not yet proposed)    View
7116  CVE-2003-0288  Candidate  Buffer overflow in the file & folder transfer mechanism for IP Messenger for Win 2.00 through 2.02 allows remote attackers to execute arbitrary code via file with a long filename, which triggers the overflow when the user saves the file.  Assigned (20030513)  None (candidate not yet proposed)    View

Page 19520 of 20943, showing 5 records out of 104715 total, starting on record 97596, ending on 97600

Actions