CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7106  CVE-2003-0278  Candidate  Cross-site scripting (XSS) vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to insert arbitrary web script via the file parameter.  Assigned (20030512)  None (candidate not yet proposed)    View
7107  CVE-2003-0279  Candidate  Multiple SQL injection vulnerabilities in the Web_Links module for PHP-Nuke 5.x through 6.5 allows remote attackers to steal sensitive information via numeric fields, as demonstrated using (1) the viewlink function and cid parameter, or (2) index.php.  Assigned (20030512)  None (candidate not yet proposed)    View
7108  CVE-2003-0280  Candidate  Multiple buffer overflows in the SMTP Service for ESMTP CMailServer 4.0.2003.03.27 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.  Assigned (20030512)  None (candidate not yet proposed)    View
7109  CVE-2003-0281  Candidate  Buffer overflow in Firebird 1.0.2 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows local users to execute arbitrary code via a long INTERBASE environment variable when calling (1) gds_inet_server, (2) gds_lock_mgr, or (3) gds_drop.  Assigned (20030512)  None (candidate not yet proposed)    View
7110  CVE-2003-0282  Candidate  Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence.  Assigned (20030512)  None (candidate not yet proposed)    View

Page 20274 of 20943, showing 5 records out of 104715 total, starting on record 101366, ending on 101370

Actions