CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7663 | CVE-2003-0839 | Candidate | Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a "shell:" link. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7664 | CVE-2003-0840 | Candidate | Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7665 | CVE-2003-0841 | Candidate | The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7666 | CVE-2003-0842 | Candidate | Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header. | Assigned (20031008) | None (candidate not yet proposed) | View | |
7667 | CVE-2003-0843 | Candidate | Format string vulnerability in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode and using the Apache log, allows remote attackers to execute arbitrary code via format string characters in an HTTP GET request with an "Accept-Encoding: gzip" header. | Assigned (20031008) | None (candidate not yet proposed) | View |
Page 20161 of 20943, showing 5 records out of 104715 total, starting on record 100801, ending on 100805