CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7770 | CVE-2003-0946 | Candidate | Format string vulnerability in clamav-milter for Clam AntiVirus 0.60 through 0.60p, and other versions before 0.65, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the email address argument of a "MAIL FROM" command. | Assigned (20031113) | None (candidate not yet proposed) | View | |
7771 | CVE-2003-0947 | Candidate | Buffer overflow in iwconfig, when installed setuid, allows local users to execute arbitrary code via a long OUT environment variable. | Assigned (20031113) | None (candidate not yet proposed) | View | |
7772 | CVE-2003-0948 | Candidate | Buffer overflow in iwconfig allows local users to execute arbitrary code via a long HOME environment variable. | Assigned (20031113) | None (candidate not yet proposed) | View | |
7761 | CVE-2003-0937 | Candidate | SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the user. | Assigned (20031111) | None (candidate not yet proposed) | View | |
7762 | CVE-2003-0938 | Candidate | vos24u.c in SAP database server (SAP DB) 7.4.03.27 and earlier allows local users to gain SYSTEM privileges via a malicious "NETAPI32.DLL" in the current working directory, which is found and loaded by SAP DB before the real DLL, as demonstrated using the SQLAT stored procedure. | Assigned (20031111) | None (candidate not yet proposed) | View |
Page 20141 of 20943, showing 5 records out of 104715 total, starting on record 100701, ending on 100705