CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7272  CVE-2003-0445  Candidate  Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.  Assigned (20030619)  None (candidate not yet proposed)    View
7273  CVE-2003-0446  Candidate  Cross-site scripting (XSS) in Internet Explorer 5.5 and 6.0, possibly in a component that is also used by other Microsoft products, allows remote attackers to insert arbitrary web script via an XML file that contains a parse error, which inserts the script in the resulting error message.  Assigned (20030619)  None (candidate not yet proposed)    View
7274  CVE-2003-0447  Candidate  The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated.  Assigned (20030619)  None (candidate not yet proposed)    View
7275  CVE-2003-0448  Candidate  Portmon 1.7 and possibly earlier versions allows local users to read and write arbitrary files via the (1) -c (host file) or (2) -l (log file) command line options.  Assigned (20030619)  None (candidate not yet proposed)    View
7276  CVE-2003-0449  Candidate  Progress Database 9.1 to 9.1D06 trusts user input to find and load libraries using dlopen, which allows local users to gain privileges via (1) a PATH environment variable that points to malicious libraries, as demonstrated using libjutil.so in_proapsv, or (2) the -installdir command line parameter, as demonstrated using librocket_r.so in _dbagent.  Assigned (20030619)  None (candidate not yet proposed)    View

Page 20240 of 20943, showing 5 records out of 104715 total, starting on record 101196, ending on 101200

Actions