CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7224  CVE-2003-0397  Candidate  Buffer overflow in FastTrack (FT) network code, as used in Kazaa 2.0.2 and possibly other versions and products, allows remote attackers to execute arbitrary code via a packet containing a large list of supernodes, aka "Packet 0" death."  Assigned (20030610)  None (candidate not yet proposed)    View
7225  CVE-2003-0398  Candidate  Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, with the SSI EXEC feature enabled, allows remote attackers to execute arbitrary code via a text variable to a Vignette Application that is later displayed.  Assigned (20030610)  None (candidate not yet proposed)    View
7226  CVE-2003-0399  Candidate  Vignette StoryServer 4 and 5, Vignette V/5, and possibly other versions allows remote attackers to perform unauthorized SELECT queries by setting the vgn_creds cookie to an arbitrary value and directly accessing the save template.  Assigned (20030610)  None (candidate not yet proposed)    View
7227  CVE-2003-0400  Candidate  Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized portions of memory, as demonstrated using the "-->" string in a CookieName argument to the login template, referred to as a "memory leak" in some reports.  Assigned (20030610)  None (candidate not yet proposed)    View
7228  CVE-2003-0401  Candidate  Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.  Assigned (20030610)  None (candidate not yet proposed)    View

Page 20248 of 20943, showing 5 records out of 104715 total, starting on record 101236, ending on 101240

Actions