CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6978  CVE-2003-0149  Candidate  Heap-based buffer overflow in ePO agent for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request containing long parameters.  Assigned (20030317)  None (candidate not yet proposed)    View
6979  CVE-2003-0150  Candidate  MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.  Assigned (20030318)  NOOP(1) Christey  Christey> DEBIAN:DSA-303 | URL:http://www.debian.org/security/2003/dsa-303  View
6980  CVE-2003-0151  Candidate  BEA WebLogic Server and Express 6.0 through 7.0 does not properly restrict access to certain internal servlets that perform administrative functions, which allows remote attackers to read arbitrary files or execute arbitrary code.  Assigned (20030318)  None (candidate not yet proposed)    View
6981  CVE-2003-0152  Candidate  Unknown vulnerability in bonsai Mozilla CVS query tool allows remote attackers to execute arbitrary commands as the www-data user.  Assigned (20030319)  None (candidate not yet proposed)    View
6982  CVE-2003-0153  Candidate  bonsai Mozilla CVS query tool leaks the absolute pathname of the tool in certain error messages generated by (1) cvslog.cgi, (2) cvsview2.cgi, or (3) multidiff.cgi.  Assigned (20030319)  None (candidate not yet proposed)    View

Page 644 of 20943, showing 5 records out of 104715 total, starting on record 3216, ending on 3220

Actions