CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6840  CVE-2003-0011  Candidate  Unknown vulnerability in the DNS intrusion detection application filter for Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (blocked traffic to DNS servers) via a certain type of incoming DNS request that is not properly handled.  Assigned (20030102)  None (candidate not yet proposed)    View
6839  CVE-2003-0010  Candidate  Integer overflow in JsArrayFunctionHeapSort function used by Windows Script Engine for JScript (JScript.dll) on various Windows operating system allows remote attackers to execute arbitrary code via a malicious web page or HTML e-mail that uses a large array index value that enables a heap-based buffer overflow attack.  Assigned (20030102)  None (candidate not yet proposed)    View
6838  CVE-2003-0009  Entry  Cross-site scripting (XSS) vulnerability in Help and Support Center for Microsoft Windows Me allows remote attackers to execute arbitrary script in the Local Computer security context via an hcp:// URL with the malicious script in the topic parameter.        View
6837  CVE-2003-0008  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030102)  None (candidate not yet proposed)    View
6836  CVE-2003-0007  Entry  Microsoft Outlook 2002 does not properly handle requests to encrypt email messages with V1 Exchange Server Security certificates, which causes Outlook to send the email in plaintext, aka "Flaw in how Outlook 2002 handles V1 Exchange Server Security Certificates could lead to Information Disclosure."        View

Page 19576 of 20943, showing 5 records out of 104715 total, starting on record 97876, ending on 97880

Actions