CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7216  CVE-2003-0389  Candidate  Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script.  Assigned (20030609)  None (candidate not yet proposed)    View
7206  CVE-2003-0378  Candidate  The Kerberos login authentication feature in Mac OS X, when used with an LDAPv3 server and LDAP bind authentication, may send cleartext passwords to the LDAP server when the AuthenticationAuthority attribute is not set.  Assigned (20030605)  None (candidate not yet proposed)    View
7199  CVE-2003-0371  Candidate  Buffer overflow in Prishtina FTP client 1.x allows remote FTP servers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP banner.  Assigned (20030604)  None (candidate not yet proposed)    View
7200  CVE-2003-0372  Candidate  Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.  Assigned (20030604)  None (candidate not yet proposed)    View
7201  CVE-2003-0373  Candidate  Multiple buffer overflows in libnasl in Nessus before 2.0.6 allow local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code via (1) a long proto argument to the scanner_add_port function, (2) a long user argument to the ftp_log_in function, (3) a long pass argument to the ftp_log_in function.  Assigned (20030604)  None (candidate not yet proposed)    View

Page 20254 of 20943, showing 5 records out of 104715 total, starting on record 101266, ending on 101270

Actions