CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7770  CVE-2003-0946  Candidate  Format string vulnerability in clamav-milter for Clam AntiVirus 0.60 through 0.60p, and other versions before 0.65, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the email address argument of a "MAIL FROM" command.  Assigned (20031113)  None (candidate not yet proposed)    View
7771  CVE-2003-0947  Candidate  Buffer overflow in iwconfig, when installed setuid, allows local users to execute arbitrary code via a long OUT environment variable.  Assigned (20031113)  None (candidate not yet proposed)    View
7772  CVE-2003-0948  Candidate  Buffer overflow in iwconfig allows local users to execute arbitrary code via a long HOME environment variable.  Assigned (20031113)  None (candidate not yet proposed)    View
7761  CVE-2003-0937  Candidate  SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the user.  Assigned (20031111)  None (candidate not yet proposed)    View
7762  CVE-2003-0938  Candidate  vos24u.c in SAP database server (SAP DB) 7.4.03.27 and earlier allows local users to gain SYSTEM privileges via a malicious "NETAPI32.DLL" in the current working directory, which is found and loaded by SAP DB before the real DLL, as demonstrated using the SQLAT stored procedure.  Assigned (20031111)  None (candidate not yet proposed)    View

Page 20141 of 20943, showing 5 records out of 104715 total, starting on record 100701, ending on 100705

Actions