CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7067  CVE-2003-0239  Candidate  icqateimg32.dll parsing/rendering library in Mirabilis ICQ Pro 2003a allows remote attackers to cause a denial of service via malformed GIF89a headers that do not contain a GCT (Global Color Table) or an LCT (Local Color Table) after an Image Descriptor.  Assigned (20030501)  None (candidate not yet proposed)    View
7068  CVE-2003-0240  Candidate  The web-based administration capability for various Axis Network Camera products allows remote attackers to bypass access restrictions and modify configuration via an HTTP request to the admin/admin.shtml containing a leading // (double slash).  Assigned (20030501)  None (candidate not yet proposed)    View
7069  CVE-2003-0241  Candidate  FrontRange GoldMine mail agent 5.70 and 6.00 before 30503 directly sends HTML to the default browser without setting its security zone or otherwise labeling it untrusted, which allows remote attackers to execute arbitrary code via a message that is rendered in IE using a less secure zone.  Assigned (20030501)  None (candidate not yet proposed)    View
7051  CVE-2003-0223  Candidate  Cross-site scripting vulnerability (XSS) in the ASP function responsible for redirection in Microsoft Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to embed a URL containing script in a redirection message.  Assigned (20030430)  None (candidate not yet proposed)    View
7052  CVE-2003-0224  Candidate  Buffer overflow in ssinc.dll for Microsoft Internet Information Services (IIS) 5.0 allows local users to execute arbitrary code via a web page with a Server Side Include (SSI) directive with a long filename, aka "Server Side Include Web Pages Buffer Overrun."  Assigned (20030430)  None (candidate not yet proposed)    View

Page 20283 of 20943, showing 5 records out of 104715 total, starting on record 101411, ending on 101415

Actions