CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7053  CVE-2003-0225  Candidate  The ASP function Response.AddHeader in Microsoft Internet Information Server (IIS) 4.0 and 5.0 does not limit memory requests when constructing headers, which allow remote attackers to generate a large header to cause a denial of service (memory consumption) with an ASP page.  Assigned (20030430)  None (candidate not yet proposed)    View
7054  CVE-2003-0226  Candidate  Microsoft Internet Information Services (IIS) 5.0 and 5.1 allows remote attackers to cause a denial of service via a long WebDAV request with a (1) PROPFIND or (2) SEARCH method, which generates an error condition that is not properly handled.  Assigned (20030430)  None (candidate not yet proposed)    View
7055  CVE-2003-0227  Candidate  The logging capability for unicast and multicast transmissions in the ISAPI extension for Microsoft Windows Media Services in Microsoft Windows NT 4.0 and 2000, nsiislog.dll, allows remote attackers to cause a denial of service in Internet Information Server (IIS) and execute arbitrary code via a certain network request.  Assigned (20030430)  None (candidate not yet proposed)    View
7056  CVE-2003-0228  Candidate  Directory traversal vulnerability in Microsoft Windows Media Player 7.1 and Windows Media Player for Windows XP allows remote attackers to execute arbitrary code via a skins file with a URL containing hex-encoded backslash characters (%5C) that causes an executable to be placed in an arbitrary location.  Assigned (20030430)  None (candidate not yet proposed)    View
7057  CVE-2003-0229  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030430)  None (candidate not yet proposed)    View

Page 20284 of 20943, showing 5 records out of 104715 total, starting on record 101416, ending on 101420

Actions