CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7272 | CVE-2003-0445 | Candidate | Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI. | Assigned (20030619) | None (candidate not yet proposed) | View | |
7273 | CVE-2003-0446 | Candidate | Cross-site scripting (XSS) in Internet Explorer 5.5 and 6.0, possibly in a component that is also used by other Microsoft products, allows remote attackers to insert arbitrary web script via an XML file that contains a parse error, which inserts the script in the resulting error message. | Assigned (20030619) | None (candidate not yet proposed) | View | |
7274 | CVE-2003-0447 | Candidate | The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated. | Assigned (20030619) | None (candidate not yet proposed) | View | |
7275 | CVE-2003-0448 | Candidate | Portmon 1.7 and possibly earlier versions allows local users to read and write arbitrary files via the (1) -c (host file) or (2) -l (log file) command line options. | Assigned (20030619) | None (candidate not yet proposed) | View | |
7276 | CVE-2003-0449 | Candidate | Progress Database 9.1 to 9.1D06 trusts user input to find and load libraries using dlopen, which allows local users to gain privileges via (1) a PATH environment variable that points to malicious libraries, as demonstrated using libjutil.so in_proapsv, or (2) the -installdir command line parameter, as demonstrated using librocket_r.so in _dbagent. | Assigned (20030619) | None (candidate not yet proposed) | View |
Page 20240 of 20943, showing 5 records out of 104715 total, starting on record 101196, ending on 101200