CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7092 | CVE-2003-0264 | Candidate | Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server. | Assigned (20030507) | None (candidate not yet proposed) | View | |
7093 | CVE-2003-0265 | Candidate | Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed. | Assigned (20030507) | None (candidate not yet proposed) | View | |
7094 | CVE-2003-0266 | Candidate | Multiple buffer overflows in SLWebMail 3 on Windows systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long Language parameter to showlogin.dll, (2) a long CompanyID parameter to recman.dll, (3) a long CompanyID parameter to admin.dll, or (4) a long CompanyID parameter to globallogin.dll. | Assigned (20030507) | None (candidate not yet proposed) | View | |
7095 | CVE-2003-0267 | Candidate | ShowGodLog.dll in SLWebMail 3 on Windows systems allows remote attackers to read arbitrary files by directly calling ShowGodLog.dll with an argument specifying the full path of the target file. | Assigned (20030507) | None (candidate not yet proposed) | View | |
7096 | CVE-2003-0268 | Candidate | SLWebMail 3 on Windows systems allows remote attackers to identify the full path of the server via invalid requests to DLLs such as WebMailReq.dll, which reveals the path in an error message. | Assigned (20030507) | None (candidate not yet proposed) | View |
Page 20278 of 20943, showing 5 records out of 104715 total, starting on record 101386, ending on 101390