CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7174  CVE-2003-0346  Candidate  Multiple integer overflows in a Microsoft Windows DirectX MIDI library (QUARTZ.DLL) allow remote attackers to execute arbitrary code via a MIDI (.mid) file with (1) large length for a Text or Copyright string, or (2) a large number of tracks, which leads to a heap-based buffer overflow.  Assigned (20030528)  None (candidate not yet proposed)    View
7175  CVE-2003-0347  Candidate  Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.  Assigned (20030528)  None (candidate not yet proposed)    View
7176  CVE-2003-0348  Candidate  A certain Microsoft Windows Media Player 9 Series ActiveX control allows remote attackers to view and manipulate the Media Library on the local system via HTML script.  Assigned (20030528)  None (candidate not yet proposed)    View
7177  CVE-2003-0349  Candidate  Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.  Assigned (20030528)  None (candidate not yet proposed)    View
7178  CVE-2003-0350  Candidate  The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a "Shatter" style message to the Utility Manager that references a user-controlled callback function.  Assigned (20030528)  None (candidate not yet proposed)    View

Page 20260 of 20943, showing 5 records out of 104715 total, starting on record 101296, ending on 101300

Actions