CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7092  CVE-2003-0264  Candidate  Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.  Assigned (20030507)  None (candidate not yet proposed)    View
7093  CVE-2003-0265  Candidate  Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.  Assigned (20030507)  None (candidate not yet proposed)    View
7094  CVE-2003-0266  Candidate  Multiple buffer overflows in SLWebMail 3 on Windows systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long Language parameter to showlogin.dll, (2) a long CompanyID parameter to recman.dll, (3) a long CompanyID parameter to admin.dll, or (4) a long CompanyID parameter to globallogin.dll.  Assigned (20030507)  None (candidate not yet proposed)    View
7095  CVE-2003-0267  Candidate  ShowGodLog.dll in SLWebMail 3 on Windows systems allows remote attackers to read arbitrary files by directly calling ShowGodLog.dll with an argument specifying the full path of the target file.  Assigned (20030507)  None (candidate not yet proposed)    View
7096  CVE-2003-0268  Candidate  SLWebMail 3 on Windows systems allows remote attackers to identify the full path of the server via invalid requests to DLLs such as WebMailReq.dll, which reveals the path in an error message.  Assigned (20030507)  None (candidate not yet proposed)    View

Page 20278 of 20943, showing 5 records out of 104715 total, starting on record 101386, ending on 101390

Actions